Lucene search

K
cveMitreCVE-2006-1649
HistoryApr 06, 2006 - 10:04 a.m.

CVE-2006-1649

2006-04-0610:04:00
mitre
web.nvd.nist.gov
20
eset nod32
cve-2006-1649
file quarantine
directory permissions

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6

Confidence

High

EPSS

0.001

Percentile

28.0%

The “restore to” selection in the “quarantine a file” capability of ESET NOD32 before 2.51.26 allows a restore to any directory that permits read access by the invoking user, which allows local users to create new files despite write-access directory permissions.

Affected configurations

Nvd
Node
eset_softwarenod32_antivirusMatch1.0.11
OR
eset_softwarenod32_antivirusMatch1.0.12
OR
eset_softwarenod32_antivirusMatch1.0.13
OR
eset_softwarenod32_antivirusMatch2.5
VendorProductVersionCPE
eset_softwarenod32_antivirus1.0.11cpe:2.3:a:eset_software:nod32_antivirus:1.0.11:*:*:*:*:*:*:*
eset_softwarenod32_antivirus1.0.12cpe:2.3:a:eset_software:nod32_antivirus:1.0.12:*:*:*:*:*:*:*
eset_softwarenod32_antivirus1.0.13cpe:2.3:a:eset_software:nod32_antivirus:1.0.13:*:*:*:*:*:*:*
eset_softwarenod32_antivirus2.5cpe:2.3:a:eset_software:nod32_antivirus:2.5:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6

Confidence

High

EPSS

0.001

Percentile

28.0%

Related for CVE-2006-1649