CVE-2007-5838
Severity CVSS v4.0:
Pending analysis
Type:
CWE-16
Configuration Errors
Publication date:
06/11/2007
Last modified:
09/04/2025
Description
Aclient in Symantec Altiris Deployment Solution 6.x before 6.8.380.0 allows local users to gain local System privileges via the "Enable key-based authentication to Deployment server" browser option, a different issue than CVE-2007-4380.
Impact
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:symantec:altiris_deployment_solution:6:*:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:altiris_deployment_solution:6.8:*:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:altiris_deployment_solution:6.8:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:altiris_deployment_solution:6.8:sp2:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/27412
- http://www.irmplc.com/index.php/111-Vendor-Alerts
- http://www.irmplc.com/index.php/152-Advisory-022
- http://www.securityfocus.com/bid/26265
- http://www.securitytracker.com/id?1018876=
- http://www.symantec.com/avcenter/security/Content/2007.10.31a.html
- http://www.vupen.com/english/advisories/2007/3673
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38180
- http://secunia.com/advisories/27412
- http://www.irmplc.com/index.php/111-Vendor-Alerts
- http://www.irmplc.com/index.php/152-Advisory-022
- http://www.securityfocus.com/bid/26265
- http://www.securitytracker.com/id?1018876=
- http://www.symantec.com/avcenter/security/Content/2007.10.31a.html
- http://www.vupen.com/english/advisories/2007/3673
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38180



