CVE-2007-4649 Information
Feb 14, 2021
cve
Description
MicroWorld eScan Virus Control 9.0.722.1 Anti-Virus 9.0.722.1 and Internet Security 9.0.722.1 use weak permissions (Everyone:Full Control) for their installation directory trees which allows local users to gain privileges by replacing application files as demonstrated by traysser.exe.
Reference
http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065509.html http://secunia.com/advisories/26581 http://securityreason.com/securityalert/3085 http://www.securityfocus.com/bid/25493 https://exchange.xforce.ibmcloud.com/vulnerabilities/36367
Share on: