CVE-2004-2648: Low severity Faronics Freezex vulnerability
Published Dec 31, 2004
·Updated
FreezeX 1.00.100.0666 allows local users with administrator privileges to cause a denial of service (FreezeX application) by overwriting the db.fzx file.
Affected Software
2 affected components
Faronics Freezex=1.00.100.0666
Faronics Freezex=1.00.100.0666
Remediation
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Dec 5, 2005
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2648?
CVE-2004-2648 is considered a medium severity vulnerability due to the potential for denial of service by local users with administrative privileges.
2
How do I fix CVE-2004-2648?
To fix CVE-2004-2648, ensure that only trusted administrators have access to the FreezeX application and restrict modifications to the db.fzx file.
3
Who is affected by CVE-2004-2648?
CVE-2004-2648 affects local users with administrator privileges on systems running Faronics FreezeX version 1.00.100.0666.
4
What does CVE-2004-2648 exploit?
CVE-2004-2648 exploits the capability of local users to overwrite the db.fzx file, causing a denial of service.
5
When was CVE-2004-2648 disclosed?
CVE-2004-2648 was disclosed in December 2004.