Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7f48-jjj6-53wv

Опубликовано: 30 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1

Описание

Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions.

Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions.

EPSS

Процентиль: 3%
0.00016
Низкий

7.1 High

CVSS4

Дефекты

CWE-250

Связанные уязвимости

nvd
8 дней назад

Improper access control in the WCF endpoint in Edgemo (now owned by Danoffice IT) Local Admin Service 1.2.7.23180 on Windows allows a local user to escalate their privileges to local administrator via direct communication with the LocalAdminService.exe named pipe, bypassing client-side group membership restrictions.

EPSS

Процентиль: 3%
0.00016
Низкий

7.1 High

CVSS4

Дефекты

CWE-250