Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g5hw-7f7p-926r

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.

In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.

EPSS

Процентиль: 31%
0.00117
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.

EPSS

Процентиль: 31%
0.00117
Низкий