Security Advisory

CVE-2000-0650

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2001-05-07 04:00:00
Last updated 2024-08-08 05:28:40
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The default installation of VirusScan 4.5 and NetShield 4.5 has insecure permissions for the registry key that identifies the AutoUpgrade directory, which allows local users to execute arbitrary commands by replacing SETUP.EXE in that directory with a Trojan Horse.