|
Brought to you by:
Suppliers of:
|
|
|
| |
Webroot Spy Sweeper Enterprise provides "comprehensive spyware protection for corporations. Using a client / server architecture, Spy Sweeper Enterprise proactively detects and removes all forms of spyware and malware within the organization".
Secunia Research has discovered a vulnerability in Spy Sweeper Enterprise, which can be exploited by malicious, local users to gain escalated privileges. |
| |
Credit:
The information has been provided by Carsten H. Eiram.
The original article can be found at: http://secunia.com/secunia_research/2004-14/
|
| |
Vulnerable Systems:
* Spy Sweeper Enterprise version 1.5.1 (Build 3698)
Immune Systems:
* Spy Sweeper Enterprise version 2.0
The vulnerability is caused due to the Spy Sweeper Enterprise Client "SpySweeperTray.exe" process invoking the help functionality with SYSTEM privileges.
This can be exploited to execute arbitrary commands on a system with escalated privileges.
Solution:
The vendor has issued version 2.0, which fixes the vulnerability.
Time Table:
15/11/2004 - Vulnerability discovered.
15/11/2004 - Vendor notified.
15/11/2004 - Vendor response.
19/12/2004 - Vendor issues version 2.0.
21/12/2004 - Public disclosure.
|
|
|
|
|