Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxm2-h73p-34fq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka 'Windows Application Compatibility Client Library Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16876.

An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations, aka 'Windows Application Compatibility Client Library Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16876.

EPSS

Процентиль: 93%
0.10918
Средний

7.8 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

<p>An elevation of privilege vulnerability exists when the Windows Application Compatibility Client Library improperly handles registry operations. An attacker who successfully exploited this vulnerability could gain elevated privileges.</p> <p>To exploit the vulnerability, an attacker would first need code execution on a victim system. An attacker could then run a specially crafted application.</p> <p>The security update addresses the vulnerability by ensuring the Windows Application Compatibility Client Library properly handles registry operations.</p>

CVSS3: 7.8
msrc
больше 4 лет назад

Windows Application Compatibility Client Library Elevation of Privilege Vulnerability

CVSS3: 7.8
fstec
больше 4 лет назад

Уязвимость клиентской библиотеки совместимости приложений (Windows Application Compatibility Client Library) операционной системы Windows, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 93%
0.10918
Средний

7.8 High

CVSS3

Дефекты

CWE-269