{"id":"CVE-2006-7191","details":"Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program.","modified":"2026-04-10T03:37:55.725805Z","published":"2007-04-03T00:19:00Z","references":[{"type":"ADVISORY","url":"http://secunia.com/advisories/25157"},{"type":"WEB","url":"http://lam.cvs.sourceforge.net/lam/lam/lib/lamdaemon.pl"},{"type":"WEB","url":"http://lam.cvs.sourceforge.net/lam/lam/lib/lamdaemon.pl?r1=1.32&r2=1.33"},{"type":"WEB","url":"http://lam.sourceforge.net/changelog/index.htm"},{"type":"WEB","url":"http://www.securityfocus.com/bid/23857"},{"type":"WEB","url":"http://www.us.debian.org/security/2007/dsa-1287"}],"schema_version":"1.7.5"}