7.2
CVSSv2

CVE-2016-3943

Published: 18/04/2016 Updated: 09/09/2021
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Panda Endpoint Administration Agent prior to 7.50.00, as used in Panda Security for Business products for Windows, uses a weak ACL for the Panda Security/WaAgent directory and sub-directories, which allows local users to gain SYSTEM privileges by modifying an executable module.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

watchguard panda endpoint administration agent

Exploits

* CVE: CVE-2016-3943 * Vendor: Panda Security * Reported by: Kyriakos Economou * Date of Release: 05/04/2016 * Affected Products: Multiple * Affected Version: Panda Endpoint Administration Agent < v75000 * Fixed Version: Panda Endpoint Administration Agent v75000 Description: Panda Endpoint Administration Agent v7302 allows a local attac ...