CVE-2004-1714

Severity

21%

Complexity

39%

Confidentiality

48%

BlackICE PC Protection and Server Protection installs (1) firewall.ini, (2) blackice.ini, (3) sigs.ini and (4) protect.ini with Everyone Full Control permissions, which allows local users to cause a denial of service (crash) or modify configuration, as demonstrated by modifying firewall.ini to contain a large firewall rule.

BlackICE PC Protection and Server Protection installs (1) firewall.ini, (2) blackice.ini, (3) sigs.ini and (4) protect.ini with Everyone Full Control permissions, which allows local users to cause a denial of service (crash) or modify configuration, as demonstrated by modifying firewall.ini to contain a large firewall rule.

CVSS 2.0 Base Score 2.1. CVSS Attack Vector: local. CVSS Attack Complexity: low. CVSS Vector: (AV:L/AC:L/Au:N/C:N/I:N/A:P).

Overview

Type

Internet Security Systems BlackICE

First reported 20 years ago

2004-08-11 04:00:00

Last updated 7 years ago

2017-07-11 01:31:00

Affected Software

Internet Security Systems BlackICE PC Protection 3.6cbd

3.6cbd

Internet Security Systems BlackICE PC Protection 3.6cbr

3.6cbr

Internet Security Systems BlackICE PC Protection 3.6cbz

3.6cbz

Internet Security Systems BlackICE PC Protection 3.6cca

3.6cca

Internet Security Systems BlackICE PC Protection 3.6ccb

3.6ccb

Internet Security Systems BlackICE PC Protection 3.6ccc

3.6ccc

Internet Security Systems BlackICE PC Protection 3.6ccd

3.6ccd

Internet Security Systems BlackICE PC Protection 3.6cce

3.6cce

Internet Security Systems BlackICE PC Protection 3.6ccf

3.6ccf

Internet Security Systems BlackICE PC Protection 3.6ccg

3.6ccg

Internet Security Systems BlackICE Server Protection 3.5cdf

3.5cdf

Internet Security Systems BlackICE Server Protection 3.6cbz

3.6cbz

Internet Security Systems BlackICE Server Protection 3.6cca

3.6cca

Internet Security Systems BlackICE Server Protection 3.6ccb

3.6ccb

Internet Security Systems BlackICE Server Protection 3.6ccc

3.6ccc

Internet Security Systems BlackICE Server Protection 3.6ccd

3.6ccd

Internet Security Systems BlackICE Server Protection 3.6cce

3.6cce

Internet Security Systems BlackICE Server Protection 3.6ccf

3.6ccf

Internet Security Systems BlackICE Server Protection 3,6ccg

3.6ccg

Internet Security Systems BlackICE Server Protection 3.6cch

3.6cch

Internet Security Systems BlackICE Server Protection 3.6cno

3.6cno

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.