Vulnerabilities > CVE-2004-2335 - Unspecified vulnerability in Macromedia Contribute and Studio
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The Macromedia installers and e-licensing client on Mac OS X, as used for Macromedia Contribute 2, Director, Dreamweaver, Fireworks, Flash, and Studio, install the AuthenticationService setuid and writable by other users, which allows local users to gain privileges by modifying the program.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
References
- http://secunia.com/advisories/11123
- http://secunia.com/advisories/11123
- http://www.macromedia.com/devnet/security/security_zone/mpsb04-03.html
- http://www.macromedia.com/devnet/security/security_zone/mpsb04-03.html
- http://www.securityfocus.com/bid/9862
- http://www.securityfocus.com/bid/9862
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15465
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15465