4.3
CVSSv2

CVE-2014-3431

Published: 21/06/2014 Updated: 07/01/2017
CVSS v2 Base Score: 4.3 | Impact Score: 6.4 | Exploitability Score: 3.1
VMScore: 383
Vector: AV:L/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Symantec PGP Desktop 10.x, and Encryption Desktop Professional 10.3.x prior to 10.3.2 MP2, on OS X uses world-writable permissions for temporary files, which allows local users to bypass intended restrictions on file reading, modification, creation, and permission changes via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

symantec pgp_desktop 10.0.0

symantec pgp_desktop 10.0.1

symantec pgp_desktop 10.2.1

symantec pgp_desktop 10.2.2

symantec encryption_desktop 10.3.0

symantec encryption_desktop 10.3.1

symantec pgp_desktop 10.1.0

symantec pgp_desktop 10.1.1

symantec pgp_desktop 10.0.2

symantec pgp_desktop 10.0.3

symantec encryption_desktop 10.3.2

symantec pgp_desktop 10.1.2

symantec pgp_desktop 10.2.0