vendor:
Panda Antivirus
by:
tarkus
5.5
CVSS
MEDIUM
Local Privilege Escalation
269
CWE
Product Name: Panda Antivirus
Affected Version From: Panda Antivirus 2008
Affected Version To: Panda Antivirus 2008
Patch Exists: NO
Related CWE:
CPE: a:panda:panda_antivirus:2008
Platforms Tested: Windows
2007
Panda Antivirus 2008 Local Privilege Escalation
During installation of Panda Antivirus 2008, the permissions for the installation folder are set to Everyone:Full Control, allowing an unprivileged user to replace the service executable with a file of their choice and gain full access with LocalSystem privileges. This can be exploited by renaming the service executable, copying a trojaned application, and rebooting the system.
Mitigation:
Vendor recommends updating to the latest version of the software.