CVE-2004-1149

Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-01-10 05:00

Updated : 2024-02-28 10:42


NVD link : CVE-2004-1149

Mitre link : CVE-2004-1149

CVE.ORG link : CVE-2004-1149


JSON object : View

Products Affected

broadcom

  • etrust_ez_antivirus