Описание
The installation of Cisco Secure Desktop (CSD) before 3.1.1.45 uses insecure default permissions (all users full control) for the CSD directory and its parent directory, which allow local users to gain privileges by replacing CSD executables, aka "Local Privilege Escalation".
The installation of Cisco Secure Desktop (CSD) before 3.1.1.45 uses insecure default permissions (all users full control) for the CSD directory and its parent directory, which allow local users to gain privileges by replacing CSD executables, aka "Local Privilege Escalation".
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-5808
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30128
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=442
- http://secunia.com/advisories/22747
- http://securitytracker.com/id?1017195
- http://www.cisco.com/warp/public/707/cisco-sa-20061108-csd.shtml
- http://www.osvdb.org/30308
- http://www.securityfocus.com/bid/20964
- http://www.vupen.com/english/advisories/2006/4409
EPSS
CVE ID
Связанные уязвимости
The installation of Cisco Secure Desktop (CSD) before 3.1.1.45 uses insecure default permissions (all users full control) for the CSD directory and its parent directory, which allow local users to gain privileges by replacing CSD executables, aka "Local Privilege Escalation".
EPSS