Kaspersky Anti-Spam 3.0 MP1 before Critical Fix 2 (3.0.278.4) sets incorrect permissions for application files in certain upgrade scenarios, which might allow local users to gain privileges.
References
Configurations
History
21 Nov 2024, 00:35
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/37216 - | |
References | () http://secunia.com/advisories/26312 - Vendor Advisory | |
References | () http://www.kaspersky.com/technews?id=203038705 - | |
References | () http://www.securityfocus.com/bid/25189 - Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/35782 - |
Information
Published : 2007-08-08 02:17
Updated : 2024-11-21 00:35
NVD link : CVE-2007-4206
Mitre link : CVE-2007-4206
CVE.ORG link : CVE-2007-4206
JSON object : View
Products Affected
kaspersky_lab
- kaspersky_anti-spam
CWE