CVE Vulnerabilities

CVE-2005-4505

Published: Dec 23, 2005 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Unquoted Windows search path vulnerability in McAfee VirusScan Enterprise 8.0i (patch 11) and CMA 3.5 (patch 5) might allow local users to gain privileges via a malicious program.exe file in the C: folder, which is run by naPrdMgr.exe when it attempts to execute EntVUtil.EXE under an unquoted Program Files path.

Affected Software

Name Vendor Start Version End Version
Common_management_agent Mcafee 3.5 3.5
Virusscan_enterprise Mcafee 8.0i 8.0i

References