CVE-2009-3108
Currently unrated
Key Information:
- Vendor
- Symantec
- Vendor
- CVE Published:
- 8 September 2009
Summary
The Aclient GUI in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 installs a client executable with insecure permissions (Everyone:Full Control), which allows local users to gain privileges by replacing the executable with a Trojan horse program.
References
Timeline
Vulnerability published
Vulnerability Reserved