PT-2016-6238 · Alertus · Alertus Desktop Notification
Gerrit Dewitt
·
Published
2016-06-26
·
Updated
2016-06-28
·
CVE-2016-5087
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Alertus Desktop Notification versions prior to 2.9.31.1710 on OS X
Description
The issue allows local users to modify configuration files and other unspecified files due to weak permissions, potentially enabling them to suppress emergency notifications or alter content through standard filesystem operations.
Recommendations
For versions prior to 2.9.31.1710, update to version 2.9.31.1710 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alertus Desktop Notification