CVE-2005-0515

high

Description

Smc.exe in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before launching the Log Viewer export functionality, which allows local users to corrupt arbitrary files by saving log files.

References

http://www.webroot.com/services/mfp_advisory.php

http://www.securityfocus.com/bid/12842

http://secunia.com/secunia_research/2004-20/advisory/

http://secunia.com/advisories/13577

Details

Source: Mitre, NVD

Published: 2005-05-18

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:P/A:N

Severity: Low

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.00069