Vulnerability Details CVE-2004-1149
Computer Associates eTrust EZ Antivirus 7.0.0 to 7.0.4, including 7.0.1.4, installs its files with insecure permissions (ACLs), which allows local users to gain privileges by replacing critical programs with malicious ones, as demonstrated using VetMsg.exe.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.8%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2004-1149
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.1
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.2
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.3
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.1.4
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.2
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.2.1
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.3
-
cpe:2.3:a:broadcom:etrust_ez_antivirus:7.0.4