Vulnerabilities > CVE-2005-1372 - Local Privilege Escalation vulnerability in BakBone NetVault NVStatsMngr.EXE

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
bakbone
exploit available

Summary

nvstatsmngr.exe process in BakBone NetVault 7.1 does not properly drop privileges before opening files, which allows local users to gain privileges via the Help menu.

Vulnerable Configurations

Part Description Count
Application
Bakbone
2

Exploit-Db

descriptionBakBone NetVault 7.1 Local Privilege Escalation Exploit. CVE-2005-1372. Local exploit for windows platform
idEDB-ID:1161
last seen2016-01-31
modified2005-04-27
published2005-04-27
reporterReed Arvin
sourcehttps://www.exploit-db.com/download/1161/
titleBakBone NetVault 7.1 - Local Privilege Escalation Exploit