VulnerabilityModified
CVE-2005-1372
nvstatsmngr.exe process in BakBone NetVault 7.1 does not properly drop privileges before opening files, which allows local users to gain privileges via the Help menu.
MEDIUM 4.6EPSS 1.00%
Does this matter?
Lower severity and a low EPSS score (1.00%). Track it; it rarely justifies an emergency change on its own.
Description
nvstatsmngr.exe process in BakBone NetVault 7.1 does not properly drop privileges before opening files, which allows local users to gain privileges via the Help menu.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 1.00% probability · 61th percentile
- CISA KEV
- Not listed
- Affected
- bakbone/netvault
- Source
- cve@mitre.org
References
- http://marc.info/?l=bugtraq&m=111464410324243&w=2
- http://secunia.com/advisories/15158/
- http://www.osvdb.org/15900
- http://www.securityfocus.com/bid/13408Exploit
- http://www.vupen.com/english/advisories/2005/0420
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20302
- http://marc.info/?l=bugtraq&m=111464410324243&w=2
- http://secunia.com/advisories/15158/
- http://www.osvdb.org/15900
- http://www.securityfocus.com/bid/13408Exploit
- http://www.vupen.com/english/advisories/2005/0420
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20302
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.