PT-2016-6238 · Alertus · Alertus Desktop Notification

Gerrit Dewitt

·

Published

2016-06-26

·

Updated

2016-06-28

·

CVE-2016-5087

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Alertus Desktop Notification versions prior to 2.9.31.1710 on OS X
Description The issue allows local users to modify configuration files and other unspecified files due to weak permissions, potentially enabling them to suppress emergency notifications or alter content through standard filesystem operations.
Recommendations For versions prior to 2.9.31.1710, update to version 2.9.31.1710 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-5087

Affected Products

Alertus Desktop Notification