Lucene search

K
cveMitreCVE-2005-1590
HistoryMay 16, 2005 - 4:00 a.m.

CVE-2005-1590

2005-05-1604:00:00
mitre
web.nvd.nist.gov
32
altiris client service
aclient.exe
windows
local users
password protection
administrative interface
vulnerability

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

5.1%

The Altiris Client Service for Windows (ACLIENT.EXE) 6.0.88 allows local users to disable password protection and access the administrative interface by finding and showing the “Altiris Client Service” hidden window, disabling the password protection, disabling the “Hide client tray icon box” option, then opening the AClient tray icon and using the View Log File option, a different vulnerability than CVE-2004-2070.

Affected configurations

Nvd
Node
altirisclient_serviceMatch6.0.88
OR
altirisdeployment_solutionMatch5.6sp1
OR
altirisdeployment_solutionMatch5.6.181
OR
altirisdeployment_solutionMatch6.0
VendorProductVersionCPE
altirisclient_service6.0.88cpe:2.3:a:altiris:client_service:6.0.88:*:*:*:*:*:*:*
altirisdeployment_solution5.6cpe:2.3:a:altiris:deployment_solution:5.6:sp1:*:*:*:*:*:*
altirisdeployment_solution5.6.181cpe:2.3:a:altiris:deployment_solution:5.6.181:*:*:*:*:*:*:*
altirisdeployment_solution6.0cpe:2.3:a:altiris:deployment_solution:6.0:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2005-1590