Lucene search

K
cveMitreCVE-2007-0436
HistoryFeb 04, 2007 - 12:28 a.m.

CVE-2007-0436

2007-02-0400:28:00
CWE-264
mitre
web.nvd.nist.gov
30
cve-2007-0436
barron mccann
x-kryptor
driver
bms1446hrr
xgntr bms1351
install bms1472
localsystem privileges
security vulnerability

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

25.8%

Barron McCann X-Kryptor Driver BMS1446HRR (Xgntr BMS1351 Install BMS1472) in X-Kryptor Secure Client does not drop privileges when launching an Explorer window in response to a help command, which allows local users to gain LocalSystem privileges via interactive use of Explorer.

Affected configurations

Nvd
Node
barron_mccanninstallMatchbms1472
OR
barron_mccannx-kryptor_driverMatchbms1446hrr
OR
barron_mccannx-kryptor_secure_client
OR
barron_mccannxgntrMatchbms1351
VendorProductVersionCPE
barron_mccanninstallbms1472cpe:2.3:a:barron_mccann:install:bms1472:*:*:*:*:*:*:*
barron_mccannx-kryptor_driverbms1446hrrcpe:2.3:a:barron_mccann:x-kryptor_driver:bms1446hrr:*:*:*:*:*:*:*
barron_mccannx-kryptor_secure_client*cpe:2.3:a:barron_mccann:x-kryptor_secure_client:*:*:*:*:*:*:*:*
barron_mccannxgntrbms1351cpe:2.3:a:barron_mccann:xgntr:bms1351:*:*:*:*:*:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

25.8%

Related for CVE-2007-0436