CVE-2007-5254 Information

Description

VirusBlokAda Vba32 AntiVirus 3.12.2 uses weak permissions (Everyone:Write) for its installation directory which allows local users to gain privileges by replacing application programs as demonstrated by replacing vba32ldr.exe.

Reference

http://lists.grok.org.uk/pipermail/full-disclosure/2007-October/066313.html http://osvdb.org/37991 http://secunia.com/advisories/27094 http://www.anti-virus.by/en/ http://www.securityfocus.com/bid/25930

Share on: