Vulnerabilities > CVE-2006-1649 - Local Arbitrary File Creation vulnerability in Eset Software NOD32 Antivirus

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
eset-software
nessus

Summary

The "restore to" selection in the "quarantine a file" capability of ESET NOD32 before 2.51.26 allows a restore to any directory that permits read access by the invoking user, which allows local users to create new files despite write-access directory permissions. ESET NOD32 Antivirus version 2.51.26 fixes this vulnerability. All versions of this product prior to 2.51.26 are vulnerable.

Nessus

NASL familyWindows
NASL idNOD32_LOCAL_FILE_CREATION.NASL
descriptionThe installed version of NOD32 reportedly allows a local user to restore a malicious file from NOD32
last seen2020-06-01
modified2020-06-02
plugin id21609
published2006-05-27
reporterThis script is Copyright (C) 2006-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/21609
titleNOD32 Antivirus Restore To Feature Local File Creation