10

CVE-2004-2622

AClient.exe in Altiris Deployment Solution 6.x and 5.x does not require authentication from the first Deployment Server that it connects to, which allows remote malicious servers to gain administrator access.
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.6% 0.834
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/bugtraq/2004-10/0211.html
Vendor Advisory
http://archives.neohapsis.com/archives/bugtraq/2004-10/0266.html
http://packetstorm.linuxsecurity.com/0410-advisories/index2.html
http://secunia.com/advisories/12944
Vendor Advisory
http://securitytracker.com/id?1011862
Vendor Advisory
http://www.altiris.com/support/forum/Framesearch.aspx?vpath=/aexkb/public%20articles/6.x/deployment%20solution/kb/ds%20client%20security%20kb%20article%2010-22-04.doc&art=AKB6859&source=Altiris%20Helpdesk&artID=23644&refpara=532392&key=akb6859
http://www.osvdb.org/11031
http://www.securityfocus.com/bid/11498
https://exchange.xforce.ibmcloud.com/vulnerabilities/17814