Altiris Deployment Solution Agent < 6.9.176 Multiple Local Vulnerabilities

High Nessus Plugin ID 32322


The remote Windows host has a program that is affected by multiple vulnerabilities.


The version of the Altiris Deployment Solution Agent installed on the remote host reportedly is affected by several issues :

- A local user could access a privileged command prompt via the Agent's user interface (CVE-2008-2290).

- A local user could leverage a GUI tooltip to access a privileged command prompt (CVE-2008-2289).

- A local user can modify or delete several registry keys used by the application, resulting in unauthorized access to system information or disruption of service (CVE-2008-2288).

- A local user with access to the install directory of Deployment Solution could replace application components, which might then run with administrative privileges on an affected system (CVE-2008-2287).


Upgrade to Altiris Deployment Solution 6.9.176 or later and update Agents.

See Also

Plugin Details

Severity: High

ID: 32322

File Name: altiris_aclient_6_9_176.nasl

Version: $Revision: 1.15 $

Type: local

Agent: windows

Family: Windows

Published: 2008/05/15

Modified: 2016/05/04

Dependencies: 13855

Risk Information

Risk Factor: High


Base Score: 7.2

Temporal Score: 6.3

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

Vulnerability Information

Required KB Items: SMB/Registry/Enumerated

Exploit Available: true

Exploit Ease: Exploits are available

Exploitable With

Metasploit (Symantec Altiris DS SQL Injection)

Reference Information

CVE: CVE-2008-2287, CVE-2008-2288, CVE-2008-2289, CVE-2008-2290

BID: 29194, 29196, 29197, 29218

OSVDB: 45313, 45314, 45315, 45316, 45317, 45318

Secunia: 30261

CWE: 264