CVE-2014-2848CVE-2014-2848

Affected configuration(s):

cpe:/a:tenable:nessus:5.2.1
cpe:/a:tenable:plugin-set:201402092115

Date published: 2014-04-11T11:55:22.257-04:00

Date last modified: 2014-04-14T11:21:17.733-04:00

CVSS Score: 6.9

Principal attack vector: LOCAL

Complexity:  MEDIUM

Reference URL: http://www.securitytracker.com/id/1029946

Summary: A race condition in the wmi_malware_scan.nbin plugin before 201402262215 for Nessus 5.2.1 allows local users to gain privileges by replacing the dissolvable agent executable in the Windows temp directory with a Trojan horse program.

CategoriesUncategorised

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.