7.2
CVE-2005-2711
- EPSS 0.37%
- Veröffentlicht 31.12.2005 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:15:31
- Erkennungen
ISS BlackIce 3.6, as used in multiple products including BlackICE PC Protection, Server Protection, Agent for Server, and RealSecure Desktop 3.6 and 7.0, does not drop privileges before launching help from the "More Info" button in the "Application Protection" dialog, which allows local users to execute arbitrary programs as SYSTEM.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Iss ≫ Blackice Pc Protection Version 3.6
Iss ≫ Blackice Pc Protection Version 3.6cpu
Iss ≫ Realsecure Desktop Version 3.6
Iss ≫ Realsecure Desktop Version 7.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.37% | 0.284 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://secunia.com/advisories/19327
http://securitytracker.com/id?1015820
http://securitytracker.com/id?1015821
http://www.idefense.com/intelligence/vulnerabilities/display.php?id=403
http://www.osvdb.org/24096
http://www.securityfocus.com/bid/17218
http://www.vupen.com/english/advisories/2006/1090
https://exchange.xforce.ibmcloud.com/vulnerabilities/25423