CVE-2011-3479
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
25/01/2012
Last modified:
11/04/2025
Description
Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), uses world-writable permissions for product-installation files, which allows local users to gain privileges by modifying a file.
Impact
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:symantec:pcanywhere:12.5:*:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.5:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.5:sp2:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.5:sp3:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.5.539:*:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.6.65:*:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.6.65:sp1:*:*:*:*:*:* | ||
| cpe:2.3:a:symantec:pcanywhere:12.6.7580:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/48092
- http://www.securityfocus.com/bid/51593
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120124_00
- http://secunia.com/advisories/48092
- http://www.securityfocus.com/bid/51593
- http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2012&suid=20120124_00



