CVE Vulnerabilities

CVE-2004-2622

Published: Dec 31, 2004 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

AClient.exe in Altiris Deployment Solution 6.x and 5.x does not require authentication from the first Deployment Server that it connects to, which allows remote malicious servers to gain administrator access.

Affected Software

Name Vendor Start Version End Version
Deployment_server_extension_for_ibm_director Altiris 5.0.1 (including) 5.0.1 (including)
Deployment_server_extension_for_ibm_director Altiris 5.5 (including) 5.5 (including)
Deployment_server_extension_for_ibm_director Altiris 6.0 (including) 6.0 (including)
Deployment_server_extension_for_ibm_director Altiris 6.1 (including) 6.1 (including)
Deployment_server_extension_for_ibm_director Altiris 6.1-sp1 (including) 6.1-sp1 (including)

References