4.6

CVE-2006-1125

Grisoft AVG Free 7.1, and other versions including 7.0.308, sets Everyone/Full Control permissions for certain update files including (1) upd_vers.cfg, (2) incavi.avm, and (3) unspecified drivers, which might allow local users to gain privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GrisoftAvg Antivirus Version7.0
GrisoftAvg Antivirus Version7.0.251
GrisoftAvg Antivirus Version7.0.323
GrisoftAvg Antivirus Version7.1.308
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.34% 0.254
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/bugtraq/2006-02/0631.html
http://secunia.com/advisories/19118
Patch
http://securitytracker.com/id?1015728
Vendor Advisory
http://www.dslreports.com/forum/remark%2C15601404
http://www.securityfocus.com/bid/16952
Patch
http://www.vupen.com/english/advisories/2006/0845
https://exchange.xforce.ibmcloud.com/vulnerabilities/25139