7.2
CVSSv2

CVE-2013-3496

Published: 22/05/2013 Updated: 22/05/2013
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Infotecs ViPNet Client 3.2.10 (15632) and previous versions, ViPNet Coordinator 3.2.10 (15632) and previous versions, ViPNet Personal Firewall 3.1 and previous versions, and ViPNet SafeDisk 4.1 (0.5643) and previous versions use weak permissions (Everyone: Full Control) for a folder under %PROGRAMFILES%\Infotecs, which allows local users to gain privileges via a Trojan horse (1) executable file or (2) DLL file.

Vulnerable Product Search on Vulmon Subscribe to Product

infotecs vipnet client

infotecs vipnet coordinator

infotecs vipnet personal firewall

infotecs vipnet safedisk