Lucene search

K
cveMitreCVE-2004-0115
HistorySep 01, 2004 - 4:00 a.m.

CVE-2004-0115

2004-09-0104:00:00
mitre
web.nvd.nist.gov
33
microsoft
virtual pc
mac
symlink attack
code execution
vulnerability
cve-2004-0115

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.8

Confidence

High

EPSS

0.005

Percentile

77.5%

VirtualPC_Services in Microsoft Virtual PC for Mac 6.0 through 6.1 allows local attackers to truncate and overwrite arbitrary files, and execute arbitrary code, via a symlink attack on the VPCServices_Log temporary file.

Affected configurations

Nvd
Node
microsoftvirtual_pcMatch6.0mac
OR
microsoftvirtual_pcMatch6.1mac
OR
microsoftvirtual_pcMatch6.2mac
VendorProductVersionCPE
microsoftvirtual_pc6.0cpe:2.3:a:microsoft:virtual_pc:6.0:*:mac:*:*:*:*:*
microsoftvirtual_pc6.1cpe:2.3:a:microsoft:virtual_pc:6.1:*:mac:*:*:*:*:*
microsoftvirtual_pc6.2cpe:2.3:a:microsoft:virtual_pc:6.2:*:mac:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.8

Confidence

High

EPSS

0.005

Percentile

77.5%

Related for CVE-2004-0115