Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Secure Elements Class 5 AVR Multiple Remote Vulnerabilities

Secure Elements Class 5 AVR (Automated Vulnerability Remediation) is susceptible to multiple vulnerabilities. These issues affect both clients and servers.

These vulnerabilities allow remote attackers to:
- gain access to potentially sensitive information
- gain administrative access to the application
- overwrite arbitrary files on servers with superuser privileges
- forge client messages
- distribute malicious update content to clients
- replay and modify messages
- execute arbitrary machine code with superuser privileges on client computers
- cause denial-of-service conditions in clients and servers

Other attacks may also be possible.

Secure Elements Class 5 AVR has been renamed to EVM (Enterprise Vulnerability Management). Class 5 EVM versions prior to 2.8.1 and Class 5 AVR are vulnerable to these issues.







 

Privacy Statement
Copyright 2009, SecurityFocus