Show filters
595 Total Results
Displaying 511-520 of 595
Sort by:
Attacker Value
Unknown

CVE-2006-0231

Disclosure Date: April 25, 2006 (last updated October 04, 2023)
Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses the same private DSA key for each installation, which allows remote attackers to conduct man-in-the-middle attacks and decrypt communications.
0
Attacker Value
Unknown

CVE-2006-0230

Disclosure Date: April 25, 2006 (last updated October 04, 2023)
Symantec Scan Engine 5.0.0.24, and possibly other versions before 5.1.0.7, uses a client-side check to verify a password, which allows remote attackers to gain administrator privileges via a modified client that sends certain XML requests.
0
Attacker Value
Unknown

CVE-2006-1892

Disclosure Date: April 20, 2006 (last updated October 04, 2023)
avast! 4 Linux Home Edition 1.0.5 allows local users to modify permissions of arbitrary files via a symlink attack on the /tmp/_avast4_ temporary directory.
0
Attacker Value
Unknown

CVE-2006-1836

Disclosure Date: April 19, 2006 (last updated October 04, 2023)
Untrusted search path vulnerability in unspecified components in Symantec LiveUpdate for Macintosh 3.0.0 through 3.5.0 do not set the execution path, which allows local users to gain privileges via a Trojan horse program.
0
Attacker Value
Unknown

CVE-2006-0951

Disclosure Date: April 08, 2006 (last updated February 22, 2025)
The GUI (nod32.exe) in NOD32 2.5 runs with SYSTEM privileges when the scheduler runs a scheduled on-demand scan, which allows local users to execute arbitrary code during a scheduled scan via unspecified attack vectors.
0
Attacker Value
Unknown

CVE-2006-1649

Disclosure Date: April 06, 2006 (last updated February 22, 2025)
The "restore to" selection in the "quarantine a file" capability of ESET NOD32 before 2.51.26 allows a restore to any directory that permits read access by the invoking user, which allows local users to create new files despite write-access directory permissions.
0
Attacker Value
Unknown

CVE-2006-1355

Disclosure Date: March 22, 2006 (last updated February 22, 2025)
avast! Antivirus 4.6.763 and earlier sets "BUILTIN\Everyone" permissions to critical system files in the installation folder, which allows local users to gain privileges or disable protection by modifying those files.
0
Attacker Value
Unknown

CVE-2006-1125

Disclosure Date: March 09, 2006 (last updated February 22, 2025)
Grisoft AVG Free 7.1, and other versions including 7.0.308, sets Everyone/Full Control permissions for certain update files including (1) upd_vers.cfg, (2) incavi.avm, and (3) unspecified drivers, which might allow local users to gain privileges.
0
Attacker Value
Unknown

CVE-2006-0812

Disclosure Date: February 23, 2006 (last updated February 22, 2025)
The VisNetic AntiVirus Plug-in (DKAVUpSch.exe) for Mail Server 4.6.0.4, 4.6.1.1, and possibly other versions before 4.6.1.2, does not drop privileges before executing other programs, which allows local users to gain privileges.
0
Attacker Value
Unknown

CVE-2005-3922

Disclosure Date: November 30, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in pskcmp.dll in Panda Software Antivirus library allows remote attackers to execute arbitrary code via a crafted ZOO archive.
0