Total vulnerabilities in the database
The Aclient GUI in Symantec Altiris Deployment Solution 6.9.x before 6.9 SP3 Build 430 installs a client executable with insecure permissions (Everyone:Full Control), which allows local users to gain privileges by replacing the executable with a Trojan horse program.
Software | From | Fixed in |
---|---|---|
symantec / altiris_deployment_solution | 6.9 | 6.9.x |
symantec / altiris_deployment_solution | 6.9-sp1 | 6.9-sp1.x |
symantec / altiris_deployment_solution | 6.9.164 | 6.9.164.x |
symantec / altiris_deployment_solution | 6.9.176 | 6.9.176.x |
symantec / altiris_deployment_solution | 6.9.355-sp1 | 6.9.355-sp1.x |
symantec / altiris_deployment_solution | 6.9.355 | 6.9.355.x |