First published: Thu Apr 06 2006(Updated: )
The "restore to" selection in the "quarantine a file" capability of ESET NOD32 before 2.51.26 allows a restore to any directory that permits read access by the invoking user, which allows local users to create new files despite write-access directory permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Eset Software Nod32 Antivirus | =1.0.11 | |
Eset Software Nod32 Antivirus | =1.0.12 | |
Eset Software Nod32 Antivirus | =2.5 | |
Eset Software Nod32 Antivirus | =1.0.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.