Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x867-pp5j-mgrh

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access rights on two objects allowing an attacker to potentially bypass discretionary access controls.

Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access rights on two objects allowing an attacker to potentially bypass discretionary access controls.

EPSS

Процентиль: 2%
0.00013
Низкий

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access rights on two objects allowing an attacker to potentially bypass discretionary access controls.

EPSS

Процентиль: 2%
0.00013
Низкий

Дефекты

CWE-287