CVE-2004-1149

Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.2:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.2.1:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.4:*:*:*:*:*:*:*

History

20 Nov 2024, 23:50

Type Values Removed Values Added
References () http://crm.my-etrust.com/login.asp?username=guest&target=DOCUMENT&openparameter - () http://crm.my-etrust.com/login.asp?username=guest&target=DOCUMENT&openparameter -
References () http://www.idefense.com/application/poi/display?id=164 - () http://www.idefense.com/application/poi/display?id=164 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/18502 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/18502 -

Information

Published : 2005-01-10 05:00

Updated : 2024-11-20 23:50


NVD link : CVE-2004-1149

Mitre link : CVE-2004-1149

CVE.ORG link : CVE-2004-1149


JSON object : View

Products Affected

broadcom

  • etrust_ez_antivirus