Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-32j3-hv3j-q9qq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.

An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Defender Elevation of Privilege Vulnerability'.

EPSS

Процентиль: 68%
0.00563
Низкий

Связанные уязвимости

CVSS3: 7.1
nvd
около 6 лет назад

An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations. To exploit the vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted command that could exploit the vulnerability and delete protected files on an affected system once MpSigStub.exe ran again. The update addresses the vulnerability and blocks the arbitrary deletion.

msrc
почти 6 лет назад

Microsoft Defender Elevation of Privilege Vulnerability

CVSS3: 8.8
fstec
около 6 лет назад

Уязвимость исполняемого файла MpSigStub.exe Защитника Microsoft (Windows Defender), позволяющая нарушителю удалять файлы в определенных частях файловой системы

EPSS

Процентиль: 68%
0.00563
Низкий