Dell TrueMobile 1300 WLAN Mini-PCI Card Util TrayApplet 3.10.39.0 does not properly drop SYSTEM privileges when started from the systray applet, which allows local users to gain privileges by accessing the Help functionality.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/vulnwatch/2004-q1/0042.html | Vendor Advisory |
http://secunia.com/advisories/10949 | Vendor Advisory |
http://securitytracker.com/id?1009174 | Vendor Advisory |
http://www.securityfocus.com/bid/9714 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15285 | |
http://archives.neohapsis.com/archives/vulnwatch/2004-q1/0042.html | Vendor Advisory |
http://secunia.com/advisories/10949 | Vendor Advisory |
http://securitytracker.com/id?1009174 | Vendor Advisory |
http://www.securityfocus.com/bid/9714 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15285 |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:53
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/vulnwatch/2004-q1/0042.html - Vendor Advisory | |
References | () http://secunia.com/advisories/10949 - Vendor Advisory | |
References | () http://securitytracker.com/id?1009174 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/9714 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/15285 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:53
NVD link : CVE-2004-2359
Mitre link : CVE-2004-2359
CVE.ORG link : CVE-2004-2359
JSON object : View
Products Affected
dell
- truemobile_1300_wlan_mini-pci_card_util_trayapplet
CWE