Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9qgf-qmmg-fc5c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In K7 Ultimate Security 16.0.0117, the module K7BKCExt.dll (aka the backup module) improperly validates the administrative privileges of the user, allowing an arbitrary file write via a symbolic link attack with file restoration functionality.

In K7 Ultimate Security 16.0.0117, the module K7BKCExt.dll (aka the backup module) improperly validates the administrative privileges of the user, allowing an arbitrary file write via a symbolic link attack with file restoration functionality.

EPSS

Процентиль: 45%
0.00221
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
около 6 лет назад

In K7 Ultimate Security 16.0.0117, the module K7BKCExt.dll (aka the backup module) improperly validates the administrative privileges of the user, allowing an arbitrary file write via a symbolic link attack with file restoration functionality.

EPSS

Процентиль: 45%
0.00221
Низкий