{
  "modified": "2025-08-09T19:01:28Z",
  "published": "2007-04-03T00:19:00Z",
  "id": "CVE-2006-7191",
  "details": "Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program.",
  "references": [
    {
      "type": "ADVISORY",
      "url": "http://secunia.com/advisories/25157"
    },
    {
      "type": "WEB",
      "url": "http://lam.cvs.sourceforge.net/lam/lam/lib/lamdaemon.pl"
    },
    {
      "type": "WEB",
      "url": "http://lam.cvs.sourceforge.net/lam/lam/lib/lamdaemon.pl?r1=1.32\u0026r2=1.33"
    },
    {
      "type": "WEB",
      "url": "http://lam.sourceforge.net/changelog/index.htm"
    },
    {
      "type": "WEB",
      "url": "http://www.securityfocus.com/bid/23857"
    },
    {
      "type": "WEB",
      "url": "http://www.us.debian.org/security/2007/dsa-1287"
    }
  ]
}
