Trend Micro Pc-cillin Internet Security Insecure File Permission


Recommended Posts

A security issue has been reported in Trend Micro PC-cillin Internet Security, which can be exploited by malicious, local users to bypass certain security restrictions or gain escalated privileges.

The vulnerability is caused due to insecure default file permissions being set on the installed files. This allows any user on the system to remove the files or replace them with malicious binaries.

Successful exploitation allows disabling the protection or execution of arbitrary code with SYSTEM privileges.

The security issue has been reported in Trend Micro PC-cillin Internet Security 2005 version 12.00 build 1244. Other versions may also be affected.

Solution:

The security issue has reportedly been fixed in version 12.4.

Advisory

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...