Adobe Photoshop Elements 8.0 installs the Adobe Active File Monitor V8 service with an insecure security descriptor, which allows local users to (1) stop the service via the stop command, (2) execute arbitrary commands as SYSTEM by using the config command to modify the binPath variable, or (3) restart the service via the start command.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2009-09-30T15:00:00

Updated: 2018-10-10T18:57:01

Reserved: 2009-09-30T00:00:00


Link: CVE-2009-3489

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2009-09-30T15:30:00.593

Modified: 2024-02-08T15:21:27.093


Link: CVE-2009-3489

JSON object: View

cve-icon Redhat Information

No data.

CWE