Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6gm8-22cp-c564

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible whitelisting bypass some of the security products

Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible whitelisting bypass some of the security products

EPSS

Процентиль: 17%
0.00055
Низкий

Связанные уязвимости

CVSS3: 6.7
nvd
около 6 лет назад

Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud prior to version 2020 patch E have bug that allows a local user to execute arbitrary code via execution compromised file placed by an attacker with administrator rights. No privilege escalation. Possible whitelisting bypass some of the security products

CVSS3: 8.4
fstec
около 6 лет назад

Уязвимость исполняемого файла ksde.exe средств антивирусной защиты Kaspersky Secure Connection, Kaspersky Internet Security, Kaspersky Total Security, Kaspersky Security Cloud, связанная с недостатками разграничения доступа, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 17%
0.00055
Низкий