积极预防 及时发现
快速响应 力保恢复
Symantec Norton AntiVirus有一个称为LiveUpdate的功能,它通过int...
发布时间:2002-03-11 信息来源:管理员

CNCVE编号:CNCVE-20020025 CVE编号: 安全级别:中 漏洞中文描述: Symantec Norton AntiVirus有一个称为LiveUpdate的功能,它通过internet的Symantec站点上获得信息检查病毒库的更新情况,下载并安装它。 这个过程可以计划运行也可以手工执行。AntiVirus实现上存在问题,本地攻击者可能轻易得到LiveUpdate的认证信息。LiveUpdate的认证信息以明文的形式存放在注册表中,一个本地攻击者可以很容易地获取这些信息。其他使用LiveUpdate功能的产品也受此问题的影响。 漏洞英文描述: Symantec Norton AntiVirus contains a feature called LiveUpdate. LiveUpdate is a process that checks for new virus definitions over the internet, downloads and installs them from a Symantec site. This process can either be scheduled or performed manually. Authentication credentials for the LiveUpdate service are stored in plaintext in the Windows registry. It is possible for a local attacker or malicious users on client machines to gain access to this information. This issue has been reported for LiveUpdate running with Symantec Norton AntiVirus Corporate Edition. It is possible that other products which use the LiveUpdate service may also be affected by this vulnerability. 漏洞参考: http://archives.neohapsis.com/archives/bugtraq/2002-02/0276.html http://www.symantec.com/ 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误