RSS   Vulnerabilities for 'Vba32 antivirus'   RSS

2008-12-12
 
CVE-2008-5546

CWE-20
 

 
VirusBlokAda VBA32 3.12.8.5, when Internet Explorer 6 or 7 is used, allows remote attackers to bypass detection of malware in an HTML document by placing an MZ header (aka "EXE info") at the beginning, and modifying the filename to have (1) no extension, (2) a .txt extension, or (3) a .jpg extension, as demonstrated by a document containing a CVE-2006-5745 exploit.

 
2007-10-06
 
CVE-2007-5254

CWE-264
 

 
VirusBlokAda Vba32 AntiVirus 3.12.2 uses weak permissions (Everyone:Write) for its installation directory, which allows local users to gain privileges by replacing application programs, as demonstrated by replacing vba32ldr.exe.

 

 >>> Vendor: Virusblokada 2 Products
Vba32 antivirus
Vba32 personal antivirus


Copyright 2024, cxsecurity.com

 

Back to Top