First published: Wed May 03 2006(Updated: )
EMC Retrospect for Windows 6.5 before 6.5.382, 7.0 before 7.0.344, and 7.5 before 7.5.1.105 allows local users to execute arbitrary code by replacing the Retrospect.exe file, possibly due to improper file permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
EMC Dantz Retrospect | <=7.0 | |
EMC Dantz Retrospect | <=6.5 | |
EMC Dantz Retrospect | <=7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-2155 is considered a high severity vulnerability due to the potential for local users to execute arbitrary code.
To fix CVE-2006-2155, it is recommended to update EMC Retrospect to version 6.5.382 or later, 7.0.344 or later, or 7.5.1.105 or later.
CVE-2006-2155 affects EMC Retrospect for Windows versions 6.5, 7.0, and 7.5 prior to their respective patched versions.
Attackers can exploit CVE-2006-2155 to replace the Retrospect.exe file and execute arbitrary code, compromising system security.
A possible workaround for CVE-2006-2155 includes adjusting file permissions to prevent unauthorized users from modifying the Retrospect.exe file.