7.2
CVSSv2

CVE-2009-3108

Published: 08/09/2009 Updated: 07/02/2013
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Aclient GUI in Symantec Altiris Deployment Solution 6.9.x prior to 6.9 SP3 Build 430 installs a client executable with insecure permissions (Everyone:Full Control), which allows local users to gain privileges by replacing the executable with a Trojan horse program.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec altiris deployment solution 6.9

symantec altiris deployment solution 6.9.355

symantec altiris deployment solution 6.9.164

symantec altiris deployment solution 6.9.176