Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
2005-01-10T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | broadcom | etrust_ez_antivirus | 7.0 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.1 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.1.1 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.1.2 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.1.3 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.1.4 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.2 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.2.1 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.3 | Yes |
Application | broadcom | etrust_ez_antivirus | 7.0.4 | Yes |