First published: Thu Oct 03 2013(Updated: )
Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebBlocker Server (wbserver.exe) in WatchGuard Server Center 11.7.4, 11.7.3, and possibly earlier allow local users to gain privileges via a Trojan horse wgpr.dll file in the application's bin directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WatchGuard Server Center | <=11.7.4 | |
WatchGuard Server Center | =11.7.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5701 is classified as a medium severity vulnerability due to its potential for local privilege escalation.
To remediate CVE-2013-5701, it is essential to update WatchGuard Server Center to version 11.7.5 or later.
CVE-2013-5701 affects WatchGuard Server Center versions 11.7.4, 11.7.3, and potentially earlier versions.
CVE-2013-5701 utilizes a local attack vector through untrusted search path vulnerabilities.
No, CVE-2013-5701 is limited to local users gaining privileges and does not allow for remote exploitation.