CVE Database
/

CVE-2009-3108

Back to search

CVE-2009-3108

Published: Sep 8, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

The Aclient GUI in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 installs a client executable with insecure permissions (Everyone:Full Control), which allows local users to gain privileges by replacing the executable with a Trojan horse program.

VendorProductVersions

n/a

n/a

affected
n/a

References

36111
vdb-entry
x_refsource_BID
36502
third-party-advisory
x_refsource_SECUNIA
1022779
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now