CVE-2007-4649
MicroWorld eScan Virus Control 9.0.722.1, Anti-Virus 9.0.722.1, and Internet Security 9.0.722.1 use weak permissions (Everyone:Full Control) for their installation directory trees, which allows local users to gain privileges by replacing application…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.89%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
MicroWorld eScan Virus Control 9.0.722.1, Anti-Virus 9.0.722.1, and Internet Security 9.0.722.1 use weak permissions (Everyone:Full Control) for their installation directory trees, which allows local users to gain privileges by replacing application files, as demonstrated by traysser.exe.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 0.89% probability · 57th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- microworld technologies/escan anti-virus · microworld technologies/escan internet security · microworld technologies/escan virus control
- Source
- cve@mitre.org
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065509.htmlExploit
- http://secunia.com/advisories/26581Vendor Advisory
- http://securityreason.com/securityalert/3085
- http://www.securityfocus.com/bid/25493Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36367
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065509.htmlExploit
- http://secunia.com/advisories/26581Vendor Advisory
- http://securityreason.com/securityalert/3085
- http://www.securityfocus.com/bid/25493Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36367
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.