Vulnerability Name:

CVE-2006-0951 (CCN-25637)

Assigned:2006-04-05
Published:2006-04-05
Updated:2011-03-08
Summary:The GUI (nod32.exe) in NOD32 2.5 runs with SYSTEM privileges when the scheduler runs a scheduled on-demand scan, which allows local users to execute arbitrary code during a scheduled scan via unspecified attack vectors.
CVSS v3 Severity:9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Privileges
References:Source: CCN
Type: Full-Disclosure Mailing List, Tue Apr 04 2006 - 13:21:41 CDT
NOD32 local privilege escalation vulnerability

Source: MITRE
Type: CNA
CVE-2006-0951

Source: CCN
Type: SA19054
NOD32 Privilege Escalation Vulnerabilities

Source: SECUNIA
Type: Patch, Vendor Advisory
19054

Source: MISC
Type: UNKNOWN
http://secunia.com/secunia_research/2006-17/advisory/

Source: CCN
Type: NOD32 Download Web page
Download the NOD32 Antivirus System

Source: OSVDB
Type: UNKNOWN
24394

Source: CCN
Type: OSVDB ID: 24394
NOD32 nod32.exe Scheduled Scan Local Privilege Escalation

Source: VUPEN
Type: UNKNOWN
ADV-2006-1242

Source: XF
Type: UNKNOWN
nod32-nod32-privilege-escalation(25637)

Vulnerable Configuration:Configuration 1:
  • cpe:/a:eset_software:nod32_antivirus:2.5:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    eset_software nod32 antivirus 2.5