peter bassill · operator
$ cve CVE-2006-3961 JSON

CVE-2006-3961 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 34.4% (pctl 98)

Patch early

A public exploit exists.

Description

Buffer overflow in McSubMgr ActiveX control (mcsubmgr.dll) in McAfee Security Center 6.0.23 for Internet Security Suite 2006, Wireless Home Network Security, Personal Firewall Plus, VirusScan, Privacy Service, SpamKiller, AntiSpyware, and QuickClean allows remote user-assisted attackers to execute arbitrary commands via long string parameters, which are later used in vsprintf.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS34.36% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2006-08-01
Last modified2026-06-16

Affected (9)

VendorProduct
mcafeeantispyware
mcafeeinternet security suite
mcafeepersonal firewall plus
mcafeeprivacy service
mcafeequickclean
mcafeesecurity center
mcafeespamkiller
mcafeevirusscan
mcafeewireless home network security

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD