PT-2002-1338 · Identix · Identix Biologon
Publicado
2002-05-03
·
Atualizado
2016-10-18
·
CVE-2002-0268
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Identix BioLogon version 3
Description
The issue allows users with physical access to the system to gain administrative privileges. This can be achieved by using the CTRL-ALT-DEL combination and running a "Browse" function, which in turn runs Explorer with SYSTEM privileges.
Recommendations
For Identix BioLogon version 3, consider restricting physical access to the system and limiting the use of the "Browse" function to prevent exploitation. As a temporary workaround, consider disabling the "Browse" function until a more permanent solution is available.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Identix Biologon