Lucene search

K
cveMitreCVE-2000-0072
HistoryJun 25, 2002 - 4:00 a.m.

CVE-2000-0072

2002-06-2504:00:00
mitre
web.nvd.nist.gov
27
cve-2000-0072
visual casel
local user privileges
nvd
privilege escalation
security flaw

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

High

EPSS

0

Percentile

5.1%

Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges.

Affected configurations

Nvd
Node
computer_power_solutionsvisual_caselMatch3.0
OR
computer_power_solutionsvisual_caselMatch3.5
VendorProductVersionCPE
computer_power_solutionsvisual_casel3.0cpe:2.3:a:computer_power_solutions:visual_casel:3.0:*:*:*:*:*:*:*
computer_power_solutionsvisual_casel3.5cpe:2.3:a:computer_power_solutions:visual_casel:3.5:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.9

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2000-0072