Symantec Norton GoBack Local Authentication Bypass Vulnerability
BID:14461
Info
Symantec Norton GoBack Local Authentication Bypass Vulnerability
| Bugtraq ID: | 14461 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 03 2005 12:00AM |
| Updated: | Aug 03 2005 12:00AM |
| Credit: | Discovery is credited to LightPhoenix. |
| Vulnerable: |
Symantec Norton GoBack 4.0 |
| Not Vulnerable: | |
Discussion
Symantec Norton GoBack Local Authentication Bypass Vulnerability
Norton GoBack is prone to a local authentication bypass vulnerability.
A successful attack causes the application to accept an arbitrary password value and allow an attacker to make various configuration changes. Other attacks may be possible as well.
Symantec is currently investigating this issue. This BID will be updated when further analysis is complete.
Norton GoBack is prone to a local authentication bypass vulnerability.
A successful attack causes the application to accept an arbitrary password value and allow an attacker to make various configuration changes. Other attacks may be possible as well.
Symantec is currently investigating this issue. This BID will be updated when further analysis is complete.
Exploit / POC
Symantec Norton GoBack Local Authentication Bypass Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Symantec Norton GoBack Local Authentication Bypass Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Symantec Norton GoBack Local Authentication Bypass Vulnerability
References:
References:
- Norton GoBack Product Page (Symantec)