PT-2005-2122 · Sygate · Sygate Secure Enterprise

Mazin Faour

·

Publicado

2005-04-12

·

Atualizado

2016-10-18

·

CVE-2005-1103

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Sygate Secure Enterprise versions 3.5 through 4.1
Description The issue allows local users to modify the security policy by exporting the policy file, changing it, and importing it back into the system, due to the lack of prevention of security policy updates by unprivileged users.
Recommendations For Sygate Secure Enterprise versions 3.5 through 4.1, consider restricting access to the policy file to prevent unprivileged users from modifying the security policy until a fix is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-1103

Produtos afetados

Sygate Secure Enterprise