VulnerabilityModified
CVE-2000-0502
Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.
LOW 2.1EPSS 0.40%
Does this matter?
Lower severity and a low EPSS score (0.40%). Track it; it rarely justifies an emergency change on its own.
Description
Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.
- CVSS 2.0
- 2.1 LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
- EPSS
- 0.40% probability · 34th percentile
- CISA KEV
- Not listed
- Affected
- mcafee/virusscan
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0038.htmlVendor Advisory
- http://www.osvdb.org/6287
- http://www.securityfocus.com/bid/1326Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4641
- http://archives.neohapsis.com/archives/bugtraq/2000-06/0038.htmlVendor Advisory
- http://www.osvdb.org/6287
- http://www.securityfocus.com/bid/1326Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/4641
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.