View Full Version : KAV Window Caption GUI Bypass Vulnerability
nick s
October 3rd, 2004, 06:56 PM
Found this at SecurityFocus today. Not sure how critical it is, but I did test it and it does work:
Kaspersky AntiVirus Window Caption GUI Bypass Vulnerability (http://www.securityfocus.com/archive/82/377086/2004-09-28/2004-10-04/0)
Re: Kaspersky AntiVirus Window Caption GUI Bypass Vulnerability (http://www.securityfocus.com/archive/82/377288/2004-09-28/2004-10-04/0)
Nick
Lisa
October 5th, 2004, 09:56 AM
Hi Nick,
I escalated this to our team. The password protection in Personal is really just to protect at a very basic level your settings from other users in the home - it is not a anti-crack protection.
Regards
Lisa
KL UK
~TiGeR~
October 7th, 2004, 08:35 AM
Hi, Lisa and Nick!
I confirm, that password protection in KAV 5.0 Personal is very simple and is not intended for serious anti-crack protection.
Regards,
Igor Kurzin.
nameless
October 11th, 2004, 10:42 AM
This isn't a serious vulnerability by any stretch of the imagination. If someone has physical access to your computer, they can do whatever they want, and defeating KAV's password protection seems to be the least of it. They could remove KAV entirely, for example, and even replace it with an application that displayed a similar tray icon, as a decoy.
KAV 5.0's password protection is merely there to keep honest people honest, and to keep novice users from doing something stupid.
vBulletin® Copyright ©2000-2008, Jelsoft Enterprises Ltd.