First published: Fri May 20 2005(Updated: )
Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 installs the client installation directories with insecure EVERYBODY permissions, which allows local users to gain sensitive information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Groove Virtual Office | <=3.1a_build_2364 | |
Groove Virtual Office | <=3.1_build_2338 | |
Groove Groove Workspace | <=2.5n_build_1871 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1675 is classified as a medium severity vulnerability due to its potential impact on sensitive information exposure.
To fix CVE-2005-1675, update Groove Virtual Office to version 3.1a build 2364 or later, or Groove Workspace to version 2.5n build 1871 or later.
The affected software versions for CVE-2005-1675 include Groove Virtual Office before 3.1 build 2338 and Groove Workspace before 2.5n build 1871.
CVE-2005-1675 features insecure EVERYBODY permissions on the client installation directories, allowing local user access to sensitive information.
Local users on systems running the affected versions of Groove software are impacted by CVE-2005-1675.