SecurityTracker.com
Keep Track of the Latest Vulnerabilities
with SecurityTracker!
    Home    |    View Topics    |    Search    |    Contact Us    |   

SecurityTracker
Archives


 
Sign Up
Sign Up for Your FREE Weekly SecurityTracker E-mail Alert Summary
Instant Alerts
Buy our Premium Vulnerability Notification Service to receive customized, instant alerts
Affiliates
Put SecurityTracker Vulnerability Alerts on Your Web Site -- It's Free!
Partners
Become a Partner and License Our Database or Notification Service
Report a Bug
Report a vulnerability that you have found to SecurityTracker
bugs
@
securitytracker.com






Category:   Application (Firewall)  >   Panda Internet Security Vendors:   Panda Software
Panda Internet Security Unsafe File Permissions Let Local Users Gain Elevated Privileges
SecurityTracker Alert ID:  1023121
SecurityTracker URL:  http://securitytracker.com/id/1023121
CVE Reference:   CVE-2009-4215   (Links to External Site)
Updated:  Dec 11 2009
Original Entry Date:  Nov 2 2009
Impact:   Modification of user information, Root access via local system, User access via local system
Exploit Included:  Yes  
Version(s): 2010; Build 15.01.00
Description:   A vulnerability was reported in Panda Internet Security. A local user can obtain elevated privileges on the target system.

The software is configured to allow 'Full' access control to the 'Everyone' group. A local user can modify the files to include arbitrary code.

Panda Global Protection 2010 is also affected.

The vendor was notified on October 27, 2009 without response.

Francis Provencher of Protek Research Lab reported this vulnerability.

Impact:   A local user can obtain elevated privileges on the target system.
Solution:   No solution was available at the time of this entry.
Vendor URL:  www.pandasecurity.com/ (Links to External Site)
Cause:   Configuration error
Underlying OS:   Windows (Any)

Message History:   None.


 Source Message Contents

Date:  Sat, 31 Oct 2009 07:24:38 -0700 (PDT)
Subject:  {PRL} Multiple Panda Security Products Local Privilege Escalation Vulnerability

#####################################################################################

Application:  Panda Global Protection 2010
          Panda Internet Security 2010                

Platforms:    Windows XP Professional SP & windows Vista SP1

Exploitation: Local Privilege Escalation

Date:         2009-10-27

Author:       Francis Provencher (Protek Research Lab's) 

          
#####################################################################################

1) Introduction
2) Technical details
3) The Code (N/A)


#####################################################################################

===============
1) Introduction
===============

Panda Global Protection 2010
Enjoy total security and ensure information integrity.

Enjoy optimum security and safeguard your valuable data with Panda Global Protection 2010. It protects you from viruses, spyware, 

rootkits, hackers, online fraud, identity theft and all other Internet threats. The anti-spam engine will keep your inbox free from 

junk mail while the Parental Control feature ensures your children can use the Web safely. You can also back up important files 

(documents, music, photos, etc.) to a CD/DVD or online and restore them in case of accidental loss or damage. 

(from Panda security website)


2009-10-27 Contact vendor (No response)
2009-10-29 Contact vendor (No response)
2009-10-30 Contact Vendor (Three strikes...out!)


#####################################################################################

============================
2) Technical details 
============================

Panda Global Protection 2010
Build 3.01.00

Panda Internet Security 2010
Build 15.01.00

All files under the install folder have Full control access for everyone and can be replace with malicious files.

... snip ...

C:\Program Files\Panda Security\Panda Global Protection 2010\PavFnSvr.exe Everyone:F

... snip ...

C:\>WHOAMI.EXE
FUZZYXP\test

C:\>telnet 127.0.0.1 4444


C:\>WHOAMI.EXE
WHOAMI.EXE
AUTORITE NT\SYSTEM





#####################################################################################

===========
3) The Code
===========

N\A


#####################################################################################
(PRL-2009-15)




      __________________________________________________________________
Looking for the perfect gift? Give the gift of Flickr! 

http://www.flickr.com/gift/

 
 


Go to the Top of This SecurityTracker Archive Page





Home   |    View Topics   |    Search   |    Contact Us

Copyright 2012, SecurityGlobal.net LLC