Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r7f6-rq55-mr8p

Опубликовано: 03 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

An unquoted Windows search path vulnerability existed in the install the MOVE 4.10.x and earlier Windows install service (mvagtsce.exe). The misconfiguration allowed an unauthorized local user to insert arbitrary code into the unquoted service path to obtain privilege escalation and stop antimalware services.

An unquoted Windows search path vulnerability existed in the install the MOVE 4.10.x and earlier Windows install service (mvagtsce.exe). The misconfiguration allowed an unauthorized local user to insert arbitrary code into the unquoted service path to obtain privilege escalation and stop antimalware services.

EPSS

Процентиль: 10%
0.00036
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-428

Связанные уязвимости

CVSS3: 4.4
nvd
больше 2 лет назад

An unquoted Windows search path vulnerability existed in the install the MOVE 4.10.x and earlier Windows install service (mvagtsce.exe). The misconfiguration allowed an unauthorized local user to insert arbitrary code into the unquoted service path to obtain privilege escalation and stop antimalware services.

EPSS

Процентиль: 10%
0.00036
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-428