CVE-2005-2711
ISS BlackIce 3.6, as used in multiple products including BlackICE PC Protection, Server Protection, Agent for Server, and RealSecure Desktop 3.6 and 7.0, does not drop privileges before launching help from the "More Info" button in the "Application…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.37%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
ISS BlackIce 3.6, as used in multiple products including BlackICE PC Protection, Server Protection, Agent for Server, and RealSecure Desktop 3.6 and 7.0, does not drop privileges before launching help from the "More Info" button in the "Application Protection" dialog, which allows local users to execute arbitrary programs as SYSTEM.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 0.37% probability · 30th percentile
- CISA KEV
- Not listed
- Affected
- iss/blackice agent server · iss/blackice pc protection · iss/blackice server protection · iss/realsecure desktop
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/19327
- http://securitytracker.com/id?1015820
- http://securitytracker.com/id?1015821
- http://www.idefense.com/intelligence/vulnerabilities/display.php?id=403Vendor Advisory
- http://www.osvdb.org/24096
- http://www.securityfocus.com/bid/17218
- http://www.vupen.com/english/advisories/2006/1090
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25423
- http://secunia.com/advisories/19327
- http://securitytracker.com/id?1015820
- http://securitytracker.com/id?1015821
- http://www.idefense.com/intelligence/vulnerabilities/display.php?id=403Vendor Advisory
- http://www.osvdb.org/24096
- http://www.securityfocus.com/bid/17218
- http://www.vupen.com/english/advisories/2006/1090
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25423
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.