Sygate · Sygate Secure Enterprise · CVE-2005-1103
**Name of the Vulnerable Software and Affected Versions**
Sygate Secure Enterprise versions 3.5 through 4.1
**Description**
The issue allows local users to modify the security policy by exporting the policy file, changing it, and importing it back into the system, due to the lack of prevention of security policy updates by unprivileged users.
**Recommendations**
For Sygate Secure Enterprise versions 3.5 through 4.1, consider restricting access to the policy file to prevent unprivileged users from modifying the security policy until a fix is available.