Security Advisory
CVE-2006-3786
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Symantec pcAnywhere 12.5 uses weak integrity protection for .cif (aka caller or CallerID) files, which allows local users to generate a custom .cif file and modify the superuser flag.