PT-2005-4160 · Trend Micro · Trend Micro Pc-Cillin Internet Security
Published
2005-12-14
·
Updated
2011-03-08
·
CVE-2005-3360
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Trend Micro PC-Cillin Internet Security versions prior to 12.00 build 1244
Description
The issue is related to the installation of the software, which uses insecure default ACLs. This allows local users to cause a denial of service by disabling the service and gain system privileges by modifying or moving critical program files.
Recommendations
For versions prior to 12.00 build 1244, consider restricting access to critical program files to prevent modification or movement, and review the default ACLs to ensure they are secure.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Trend Micro Pc-Cillin Internet Security