ISNTSmtp directory in Trend Micro InterScan Messaging Security Suite (IMSS) 5.5 build 1183 and possibly other versions before 5.7.0.1121, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying ISNTSysMonitor.exe.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/25415 | vdb entry |
http://www.secumind.net/content/french/modules/news/article.php?storyid=9&sel_lang=english | url repurposed |
http://www.vupen.com/english/advisories/2006/1041 | vdb entry |
http://secunia.com/advisories/19022 | patch vendor advisory third party advisory |