Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:50
Type | Values Removed | Values Added |
---|---|---|
References | () http://crm.my-etrust.com/login.asp?username=guest&target=DOCUMENT&openparameter - | |
References | () http://www.idefense.com/application/poi/display?id=164 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/18502 - |
Information
Published : 2005-01-10 05:00
Updated : 2024-11-20 23:50
NVD link : CVE-2004-1149
Mitre link : CVE-2004-1149
CVE.ORG link : CVE-2004-1149
JSON object : View
Products Affected
broadcom
- etrust_ez_antivirus
CWE