{"api_version":"1","generated_at":"2026-07-23T08:04:19+00:00","cve":"CVE-2005-4525","urls":{"html":"https://cve.report/CVE-2005-4525","api":"https://cve.report/api/cve/CVE-2005-4525.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-4525","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-4525"},"summary":{"title":"CVE-2005-4525","description":"SmcGui.exe in Sygate Protection Agent 5.0 build 6144 allows local users to obtain management control over the agent by executing the GUI (SmcGui.exe) and then killing the process, which causes the privileged management GUI to launch.","state":"PUBLISHED","assigner":"mitre","published_at":"2005-12-28 01:03:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.6","severity":"","vector":"AV:L/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.securityfocus.com/bid/15977/","name":"http://www.securityfocus.com/bid/15977/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Sygate Protection Agent Local Unauthorized Access Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.irmplc.com/advisory014.htm","name":"http://www.irmplc.com/advisory014.htm","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"Information Risk Management Plc. Tel: +44 (0)20 7808 6420","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/419909/100/0/threaded","name":"http://www.securityfocus.com/archive/1/419909/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/18175/","name":"http://secunia.com/advisories/18175/","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Sygate Protection Agent Protection Bypass Vulnerability - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/15977","name":"BID:15977","refsource":"MITRE","tags":[],"title":"Sygate Protection Agent Local Unauthorized Access Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-4525","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-4525","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"4525","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"sygate_technologies","cpe5":"protection_agent","cpe6":"5.0_build_6144","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T23:46:05.549Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"18175","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/18175/"},{"name":"15977","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/15977/"},{"name":"20051220 IRM 014: Sygate Protection Agent 5.0 vulnerability - A  low privileged user can disable the security agent","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/419909/100/0/threaded"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.irmplc.com/advisory014.htm"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-12-20T00:00:00.000Z","descriptions":[{"lang":"en","value":"SmcGui.exe in Sygate Protection Agent 5.0 build 6144 allows local users to obtain management control over the agent by executing the GUI (SmcGui.exe) and then killing the process, which causes the privileged management GUI to launch."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-19T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"18175","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/18175/"},{"name":"15977","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/15977/"},{"name":"20051220 IRM 014: Sygate Protection Agent 5.0 vulnerability - A  low privileged user can disable the security agent","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/419909/100/0/threaded"},{"tags":["x_refsource_MISC"],"url":"http://www.irmplc.com/advisory014.htm"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2005-4525","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"SmcGui.exe in Sygate Protection Agent 5.0 build 6144 allows local users to obtain management control over the agent by executing the GUI (SmcGui.exe) and then killing the process, which causes the privileged management GUI to launch."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"18175","refsource":"SECUNIA","url":"http://secunia.com/advisories/18175/"},{"name":"15977","refsource":"BID","url":"http://www.securityfocus.com/bid/15977/"},{"name":"20051220 IRM 014: Sygate Protection Agent 5.0 vulnerability - A  low privileged user can disable the security agent","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/419909/100/0/threaded"},{"name":"http://www.irmplc.com/advisory014.htm","refsource":"MISC","url":"http://www.irmplc.com/advisory014.htm"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2005-4525","datePublished":"2005-12-28T01:00:00.000Z","dateReserved":"2005-12-28T00:00:00.000Z","dateUpdated":"2024-08-07T23:46:05.549Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-12-28 01:03:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sygate_technologies:protection_agent:5.0_build_6144:*:*:*:*:*:*:*","matchCriteriaId":"6AD1EACF-149B-42BB-A8B6-586F61D03442"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"4525","Ordinal":"1","Title":"CVE-2005-4525","CVE":"CVE-2005-4525","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"4525","Ordinal":"1","NoteData":"SmcGui.exe in Sygate Protection Agent 5.0 build 6144 allows local users to obtain management control over the agent by executing the GUI (SmcGui.exe) and then killing the process, which causes the privileged management GUI to launch.","Type":"Description","Title":"CVE-2005-4525"},{"CveYear":"2005","CveId":"4525","Ordinal":"2","NoteData":"2005-12-27","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"4525","Ordinal":"3","NoteData":"2018-10-19","Type":"Other","Title":"Modified"}]}}}