CVE-2009-4215
Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.37%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Panda Global Protection 2010, Internet Security 2010, and Antivirus Pro 2010 use weak permissions (Everyone: Full Control) for the product files, which allows local users to gain privileges by replacing executables with Trojan horse programs.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 0.37% probability · 30th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- pandasecurity/panda antivirus · pandasecurity/panda global protection · pandasecurity/panda internet security
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/37373Vendor Advisory
- http://www.pandasecurity.com/homeusers/support/card?id=80164&idIdioma=2Patch, Vendor Advisory
- http://www.securityfocus.com/archive/1/507811/100/0/threaded
- http://www.securitytracker.com/id?1023121
- http://www.vupen.com/english/advisories/2009/3126Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54268
- http://secunia.com/advisories/37373Vendor Advisory
- http://www.pandasecurity.com/homeusers/support/card?id=80164&idIdioma=2Patch, Vendor Advisory
- http://www.securityfocus.com/archive/1/507811/100/0/threaded
- http://www.securitytracker.com/id?1023121
- http://www.vupen.com/english/advisories/2009/3126Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54268
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.