Vulnerabilities > CVE-2004-2430 - Local Privilege Escalation vulnerability in Trend Micro OfficeScan
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Trend OfficeScan Corporate Edition 5.58 and possibly earler does not drop privileges when opening a help window from a virus detection pop-up window, which allows local users to gain SYSTEM privileges.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 8 |
References
- http://archives.neohapsis.com/archives/bugtraq/2004-06/0117.html
- http://secunia.com/advisories/11806
- http://uk.trendmicro-europe.com/enterprise/support/knowledge_base_detail.php?solutionId=20118
- http://www.osvdb.org/6840
- http://www.securityfocus.com/bid/10503
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16375