First published: Wed Feb 07 2007(Updated: )
avast! Server Edition before 4.7.726 does not demand a password in a certain intended context, even when a password has been set, which allows local users to bypass authentication requirements.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avast Antivirus | =4.6.566 | |
Avast Antivirus | =4.7.660 | |
Avast Antivirus | =4.6.489 | |
Avast Antivirus | =4.6.460 | |
Avast Antivirus | =4.7.676 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0829 has a medium severity rating due to its potential to allow local users to bypass authentication.
To fix CVE-2007-0829, upgrade to Avast Server Edition version 4.7.726 or later where the vulnerability is addressed.
The impact of CVE-2007-0829 allows local users to gain unauthorized access by bypassing password requirements.
If you are using Avast Server Edition versions 4.6.460, 4.6.489, 4.6.566, 4.7.660, or 4.7.676, you are affected by CVE-2007-0829.
Local users of the affected versions of Avast Server Edition are at risk from CVE-2007-0829.