CVE-2004-2504

The GUI in Alt-N Technologies MDaemon 7.2 and earlier, including 6.8, executes child processes such as NOTEPAD.EXE with SYSTEM privileges when users create new files, which allows local users with physical access to gain privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:alt-n:mdaemon:6.8.0:*:*:*:*:*:*:*
cpe:2.3:a:alt-n:mdaemon:6.8.1:*:*:*:*:*:*:*
cpe:2.3:a:alt-n:mdaemon:6.8.2:*:*:*:*:*:*:*
cpe:2.3:a:alt-n:mdaemon:6.8.3:*:*:*:*:*:*:*
cpe:2.3:a:alt-n:mdaemon:6.8.4:*:*:*:*:*:*:*
cpe:2.3:a:alt-n:mdaemon:6.8.5:*:*:*:*:*:*:*
cpe:2.3:a:alt-n:mdaemon:7.2:*:*:*:*:*:*:*

History

20 Nov 2024, 23:53

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2004-11/0385.html - Exploit () http://archives.neohapsis.com/archives/bugtraq/2004-11/0385.html - Exploit
References () http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1324.html - Exploit () http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1324.html - Exploit
References () http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1353.html - () http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1353.html -
References () http://secunia.com/advisories/13225 - Vendor Advisory () http://secunia.com/advisories/13225 - Vendor Advisory
References () http://securitytracker.com/id?1012350 - Exploit () http://securitytracker.com/id?1012350 - Exploit
References () http://www.osvdb.org/12158 - () http://www.osvdb.org/12158 -
References () http://www.securityfocus.com/bid/11736 - () http://www.securityfocus.com/bid/11736 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/18287 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/18287 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:53


NVD link : CVE-2004-2504

Mitre link : CVE-2004-2504

CVE.ORG link : CVE-2004-2504


JSON object : View

Products Affected

alt-n

  • mdaemon