Loading
PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.
Use Putty vendor hub and Putty product page to widen CVE-2006-7162 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2019-17067, CVE-2019-9898 and CVE-2021-36367 for nearby disclosures in the same product family.