Описание
A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary programs with SYSTEM privileges.
Ссылки
- ExploitMitigationTechnical DescriptionThird Party Advisory
- Third Party AdvisoryVDB Entry
- ExploitMitigationTechnical DescriptionThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:bluestacks:bluestacks:2.1.3.5650:*:*:*:*:*:*:*
EPSS
Процентиль: 17%
0.00054
Низкий
8.4 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-275
Связанные уязвимости
CVSS3: 8.4
github
больше 3 лет назад
A local privilege escalation vulnerability exists in BlueStacks App Player. The BlueStacks App Player installer creates a registry key with weak permissions that allows users to execute arbitrary programs with SYSTEM privileges.
EPSS
Процентиль: 17%
0.00054
Низкий
8.4 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-275