PT-2007-6337 · Virusblokada · Vba32 Antivirus

Published

2007-10-06

·

Updated

2008-11-15

·

CVE-2007-5254

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: VirusBlokAda Vba32 AntiVirus version 3.12.2
Description: The issue concerns weak permissions set for the installation directory of the software, specifically 'Everyone:Write' permissions. This weakness allows local users to escalate their privileges by replacing application programs. For example, an attacker could replace the vba32ldr.exe file to gain elevated access.
Recommendations: For VirusBlokAda Vba32 AntiVirus version 3.12.2, consider restricting write access to the installation directory to prevent local users from replacing application programs until a patch is available. As a temporary workaround, changing the permissions of the installation directory to remove write access for the 'Everyone' group can help mitigate the risk.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-5254

Affected Products

Vba32 Antivirus