CVE-2007-4206: Medium severity Kaspersky Lab Kaspersky Anti-spam vulnerability
Published Aug 8, 2007
·Updated
Kaspersky Anti-Spam 3.0 MP1 before Critical Fix 2 (3.0.278.4) sets incorrect permissions for application files in certain upgrade scenarios, which might allow local users to gain privileges.
Affected Software
1 affected component
Kaspersky Lab Kaspersky Anti-spam<=3.0.274.0
Remediation
Patch Available
Event History
Aug 8, 2007
CVE Published
02:17 AM
CVE Published
via MITRE·05:52 AM
Data Sourced
via MITRE·05:52 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4206?
CVE-2007-4206 is considered a medium severity vulnerability due to its potential to allow local users to gain elevated privileges.
2
How do I fix CVE-2007-4206?
To fix CVE-2007-4206, update Kaspersky Anti-Spam to version 3.0.278.4 or later.
3
What versions of Kaspersky Anti-Spam are affected by CVE-2007-4206?
CVE-2007-4206 affects Kaspersky Anti-Spam versions up to 3.0.274.0.
4
Can local users exploit CVE-2007-4206?
Yes, local users can exploit CVE-2007-4206 due to incorrect file permissions set by the application.
5
Is there any workaround for CVE-2007-4206?
There is no specific workaround for CVE-2007-4206 other than upgrading to the patched version.