CVE-2004-2554
Novell Client Firewall 2.0 - Local Privilege Escalation via Help Functionality
Title source: llmDescription
Novell Client Firewall (NCF) 2.0, as based on the Agnitum Outpost Firewall, allows local users to execute arbitrary code with SYSTEM privileges by opening the NCF tray icon and using the Help functionality to launch programs with SYSTEM privileges.
References (7)
Core 7
Core References
Vendor Advisory third-party-advisory
government-resource
x_refsource_ciac
http://www.ciac.org/ciac/bulletins/o-090.shtml
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1008755
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15367
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/11014
Vendor Advisory x_refsource_confirm
http://support.novell.com/cgi-bin/search/searchtid.cgi?/10090585.htm
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/4120
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/9441
Scores
EPSS
0.0005
EPSS Percentile
15.0%
Details
Status
published
Products (1)
novell/client_firewall
2.0
Published
Dec 31, 2004
Tracked Since
Feb 18, 2026