Heysoft EventSave Event Log Notification Weakness
BID:6095
Info
Heysoft EventSave Event Log Notification Weakness
| Bugtraq ID: | 6095 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 01 2002 12:00AM |
| Updated: | Nov 01 2002 12:00AM |
| Credit: | This vulnerability was described in a Heysoft Security Bulletin. |
| Vulnerable: |
Heysoft EventSave+ 5.2 Heysoft EventSave+ 5.1 Heysoft EventSave 5.2 Heysoft EventSave 5.1 |
| Not Vulnerable: |
Heysoft EventSave+ 5.3 Heysoft EventSave 5.3 |
Discussion
Heysoft EventSave Event Log Notification Weakness
EventSave may not properly back up event logs if the Microsoft Windows Event Viewer is used to view the event log for the current month. This weakness occurs because when the Windows Event Viewer opens an event log, it does not permit other applications to write to the opened file. Thus EventSave is not able to update the backup event log and events may not be adequately backed up.
EventSave may not properly back up event logs if the Microsoft Windows Event Viewer is used to view the event log for the current month. This weakness occurs because when the Windows Event Viewer opens an event log, it does not permit other applications to write to the opened file. Thus EventSave is not able to update the backup event log and events may not be adequately backed up.
Exploit / POC
Heysoft EventSave Event Log Notification Weakness
There is no exploit required.
There is no exploit required.