Intelligence Center » Browse All Vulnerabilities » CVE-2006-3786
Overview |
|
Vulnerability Score | ![]() |
CVE Id | CVE-2006-3786 |
Last Modified | 05 Sep 2008 05:08:03 |
Published | 24 Jul 2006 08:19:00 |
Confidentiality Impact | ![]() |
Integrity Impact | ![]() |
Availability Impact | ![]() |
Access Vector | LOCAL |
Access Complexity | LOW |
Authentication | NONE |

CVE-2006-3786
Summary
Symantec pcAnywhere 12.5 uses weak integrity protection for .cif (aka caller or CallerID) files, which allows local users to generate a custom .cif file and modify the superuser flag.
Vulnerable Systems
Application
Symantec Pcanywhere 12.5
References
BUGTRAQ - 20060718 PcAnywhere > 12 Local Privilege Escalation
MISC - http://www.digitalbullets.org/?p=3
SECTRACK - 1016534
SREASON - 1261
Last Updated: 27 May 2016 10:43:08