First published: Sun Mar 19 2006(Updated: )
Classic Planer in AntiVir PersonalEdition Classic 7 does not drop privileges before executing external programs, which allows local users to gain privileges via notepad.exe, which is used to display scan reports.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avira AV Pack | ||
Avira AV Pack | =7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1274 is classified as a high severity vulnerability due to the potential for privilege escalation.
To fix CVE-2006-1274, it is recommended to update to the latest version of Avira AntiVir that addresses this privilege escalation issue.
CVE-2006-1274 affects users of Avira AntiVir PersonalEdition Classic version 7 who have not installed security updates.
CVE-2006-1274 can be exploited by local users to gain elevated privileges on the system.
A temporary workaround for CVE-2006-1274 is to restrict access permissions for the scan report functionality until the software is updated.