PT-2007-6337 · Virusblokada · Vba32 Antivirus
Published
2007-10-06
·
Updated
2008-11-15
·
CVE-2007-5254
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
VirusBlokAda Vba32 AntiVirus version 3.12.2
Description:
The issue concerns weak permissions set for the installation directory of the software, specifically 'Everyone:Write' permissions. This weakness allows local users to escalate their privileges by replacing application programs. For example, an attacker could replace the
vba32ldr.exe file to gain elevated access.Recommendations:
For VirusBlokAda Vba32 AntiVirus version 3.12.2, consider restricting write access to the installation directory to prevent local users from replacing application programs until a patch is available. As a temporary workaround, changing the permissions of the installation directory to remove write access for the 'Everyone' group can help mitigate the risk.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vba32 Antivirus