Vulnerability Assessment & Network Security Forums
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.
Home >> Browse Vulnerability Assessment Database >> Firewalls >> ZoneAlarm Local Privilege Escalation Vulnerability
Vulnerability Assessment Details
ZoneAlarm Local Privilege Escalation Vulnerability
Checks version of ZoneAlarm
Detailed Explanation for this Vulnerability Assessment
The remote Windows application is prone to a local privilege
The remote host is running ZoneAlarm, a firewall for Windows.
The TrueVector service associated with the version of ZoneAlarm
installed on the remote host loads as part of its startup several
necessary DLLs without specifying their pathnames. A possible hacker with
local access can exploit this flaw to execute arbitrary programs on
the affected host with LOCAL SYSTEM rights.
See also :
Upgrade to ZoneAlarm build 6.1.744.001 or later.
Network Security Threat Level:
Medium / CVSS Base Score : 5.6
Networks Security ID: 17037
Vulnerability Assessment Copyright: This script is Copyright (C) 2006 Tenable Network Security
Netac 1TB SSD 2.5'' SATA III 6 Gb/s Internal Solid State Drive 500MB/s MAC/PC
WD My Passport 1TB Certified Refurbished Portable Hard Drive White
WD My Passport 1TB Certified Refurbished Portable Hard Drive Red
250GB - 1TB Windows 11 Pro 64bit + Super Fast SATA SSD / HDD 2.5" Legacy Mode
Crucial - MX500 1TB Internal SSD SATA
Samsung - 970 EVO Plus 1TB Internal SSD PCIe Gen 3 x4 NVMe
Samsung - 980 PRO 1TB Internal Gaming SSD PCIe Gen 4 x4 NVMe
Crucial - P3 1TB Internal SSD PCIe Gen 3 x4 NVMe
WD Black SN770 NVMe SSD Game Drive 5150 Gen4 1TB | Western Digital
1TB HDD/SSD 2.5" SATA Hard Drive Laptop with Windows 11 Pro Installed
No Discussions have been posted on this vulnerability.