CVE-2004-2335

The Macromedia installers and e-licensing client on Mac OS X, as used for Macromedia Contribute 2, Director, Dreamweaver, Fireworks, Flash, and Studio, install the AuthenticationService setuid and writable by other users, which allows local users to gain privileges by modifying the program.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:macromedia:contribute:2.0:*:*:*:*:*:*:*
cpe:2.3:a:macromedia:studio:2004:*:*:*:*:*:*:*

History

20 Nov 2024, 23:53

Type Values Removed Values Added
References () http://secunia.com/advisories/11123 - () http://secunia.com/advisories/11123 -
References () http://www.macromedia.com/devnet/security/security_zone/mpsb04-03.html - Patch, Vendor Advisory () http://www.macromedia.com/devnet/security/security_zone/mpsb04-03.html - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/9862 - Patch () http://www.securityfocus.com/bid/9862 - Patch
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/15465 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/15465 -

Information

Published : 2004-12-31 05:00

Updated : 2025-04-03 01:03


NVD link : CVE-2004-2335

Mitre link : CVE-2004-2335

CVE.ORG link : CVE-2004-2335


JSON object : View

Products Affected

macromedia

  • studio
  • contribute