The Scheduler Service (VxSchedService.exe) in Symantec Storage Foundation for Windows 5.0 allows remote attackers to bypass authentication and execute arbitrary code via certain requests to the service socket that create (1) PreScript or (2) PostScript registry values under Veritas\VxSvc\CurrentVersion\Schedules specifying future command execution.
References
Configurations
Information
Published : 2007-06-04 09:30
Updated : 2018-10-16 09:42
NVD link : CVE-2007-2279
Mitre link : CVE-2007-2279
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
symantec
- veritas_storage_foundation