AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-0576

HIGH · CVSS 7.2 EPSS 0.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-02-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-0576
Severity
HIGH
CVSS
7.2
EPSS
0.40%

Original NVD Description

Untrusted search path vulnerability in opcontrol in OProfile 0.9.1 and earlier allows local users to execute arbitrary commands via a modified PATH that references malicious (1) which or (2) dirname programs. NOTE: while opcontrol normally is not run setuid, a common configuration suggests accessing opcontrol using sudo. In such a context, this is a vulnerability.