Services in ScriptLogic 4.01, and possibly other versions before 4.14, process client requests at raised privileges, which allows remote attackers to (1) modify arbitrary registry entries via the ScriptLogic RPC service (SLRPC) or (2) modify arbitrary configuration via the RunAdmin services (SLRAserver.exe and SLRAclient.exe).
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2005-03-12T05:00:00
Updated: 2024-08-08T02:12:36.131Z
Reserved: 2005-03-11T00:00:00
Link: CVE-2003-1121

No data.

Status : Modified
Published: 2003-12-31T05:00:00.000
Modified: 2024-11-20T23:46:24.153
Link: CVE-2003-1121

No data.