CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

CVE-2016-6590 Symantec Ghost Solution Suite DLL Loading Issue (SYM16-020)

2017年6月27日 1222点热度 0人点赞 0条评论

漏洞类别:Local

漏洞等级:

漏洞信息

Ghost Solution Suite is a software solution for imaging and deploying desktops, laptops, tablets and servers.

Ghost Solution Suite is vulnerable to a DLL loading issue which can allow an attacker to execute arbitrary code with elevated privileges.

Affected Version:
Ghost Solutions Suite prior to version 3.1 MP4.

QID Detection Logic (authenticated):
The QID checks flags as vulnerable if the version of the file DeployAnywhere.exe found to be is older than 12.0.0.10519. The file location is <InstallPath>\Ghost\ DeployAnywhere.exe. The intall path is determined using the registry key "HKLM\SOFTWARE\Altiris\eXpress" value "InstallDir".

漏洞危害

Successful exploitation of the vulnerability will allow an attacker to execute arbitrary code with elevated privileges.

解决方案

For more information, customers are advised to refer the vendor advisory SYM16-020.

Patch:
Following are links for downloading patches to fix the vulnerabilities:

SYM16-020

0daybank

标签: 暂无
最后更新:2017年6月27日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me