CVE-2005-1675: Medium severity groove virtual office vulnerability
Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 installs the client installation directories with insecure EVERYBODY permissions, which allows local users to gain sensitive information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1675?
CVE-2005-1675 is classified as a medium severity vulnerability due to its potential impact on sensitive information exposure.
How do I fix CVE-2005-1675?
To fix CVE-2005-1675, update Groove Virtual Office to version 3.1a build 2364 or later, or Groove Workspace to version 2.5n build 1871 or later.
What are the affected software versions in CVE-2005-1675?
The affected software versions for CVE-2005-1675 include Groove Virtual Office before 3.1 build 2338 and Groove Workspace before 2.5n build 1871.
What type of permissions vulnerability is present in CVE-2005-1675?
CVE-2005-1675 features insecure EVERYBODY permissions on the client installation directories, allowing local user access to sensitive information.
Who is impacted by CVE-2005-1675?
Local users on systems running the affected versions of Groove software are impacted by CVE-2005-1675.