Local Privilege Escalation in Symantec pcAnywhere 12.5
CVE-2006-3786

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
24 July 2006

Summary

Symantec pcAnywhere 12.5 has a vulnerability that stems from inadequate integrity protection for .cif files. This flaw enables local users to craft a malicious .cif file, which can be exploited to alter the superuser flag. This means that an attacker with local access can gain elevated privileges, compromising the security of the system.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.