CVE Vulnerabilities

CVE-2005-2554

Published: Aug 12, 2005 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The web server for Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) uses insecure permissions for the Common FrameworkDb folder, which allows local users to read arbitrary files by creating a subfolder in the EPO agent web root directory.

Affected Software

Name Vendor Start Version End Version
Epolicy_orchestrator_agent Network_associates 3.5.0_(patch_3) (including) 3.5.0_(patch_3) (including)

References