CVE-2003-1121 Information

Description

Services in ScriptLogic 4.01 and possibly other versions before 4.14 process client requests at raised privileges which allows remote attackers to (1) modify arbitrary registry entries via the ScriptLogic RPC service (SLRPC) or (2) modify arbitrary configuration via the RunAdmin services (SLRAserver.exe and SLRAclient.exe).

Reference

http://www.kb.cert.org/vuls/id/231705 http://www.kb.cert.org/vuls/id/609137 http://www.kb.cert.org/vuls/id/CRDY-5EXQRP http://www.kb.cert.org/vuls/id/CRDY-5EXQSV http://www.securityfocus.com/bid/7475 http://www.securityfocus.com/bid/7477 https://exchange.xforce.ibmcloud.com/vulnerabilities/11920 https://exchange.xforce.ibmcloud.com/vulnerabilities/11921

Share on: