Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-4649. PoCs published by Edi Strosar.
AI-analyzed exploit summary This exploit leverages insecure default file permissions in MicroWorld eScan products to escalate privileges locally. By replacing the 'traysser.exe' service executable with a malicious binary, an attacker can achieve SYSTEM-level execution upon service restart.
Description
MicroWorld eScan Virus Control 9.0.722.1, Anti-Virus 9.0.722.1, and Internet Security 9.0.722.1 use weak permissions (Everyone:Full Control) for their installation directory trees, which allows local users to gain privileges by replacing application files, as demonstrated by traysser.exe.
Exploits (1)
This exploit leverages insecure default file permissions in MicroWorld eScan products to escalate privileges locally. By replacing the 'traysser.exe' service executable with a malicious binary, an attacker can achieve SYSTEM-level execution upon service restart.