6.8
CVSSv2

CVE-2013-5582

Published: 11/02/2020 Updated: 18/02/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Ammyy Admin 3.2 and previous versions stores the client ID at a fixed memory location, which might make it easier for user-assisted remote malicious users to bypass authentication by running a local program that extracts a field from the AA_v3.2.exe file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ammyy ammyy admin

Exploits

Title: ==== Ammyy Admin - Hidden hard-coded option and Access Control vulnerability Credit: ====== Name: Bhadresh Patel Company/affiliation: Cyberoam Technologies Private Limited Website: wwwcyberoamcom CVE: ==== - CVE-2013-5581 for hidden hard-coded option (CWE-255) - CVE-2013-5582 for failure to enforce access restrictions for resources (CW ...
There is a hidden option and access control vulnerability in Ammyy Admin tool which allows an attacker to utilize "Ammyy Admin tool" as a trojan horse to access the computer without a victim's information Versions 32 and below are affected ...