Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-18670

Опубликовано: 17 дек. 2019
Источник: nvd
CVSS3: 7.8
CVSS2: 6.9
EPSS Низкий

Описание

In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027 and V3.00.3000 through V3.00.3008, a REGULAR user can load an arbitrary unsigned DLL into the signed service's process, which is running as NT AUTHORITY\SYSTEM. This is a DLL Hijacking vulnerability (including search order hijacking, which searches for the missing DLL in the PATH environment variable), which is caused by an uncontrolled search path element for nvapi.dll, atiadlxx.dll, or atiadlxy.dll.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:acer:quick_access:*:*:*:*:*:*:*:*
Версия от 2.01.3000 (включая) до 2.01.3027 (включая)
cpe:2.3:a:acer:quick_access:*:*:*:*:*:*:*:*
Версия от 3.00.3000 (включая) до 3.00.3008 (включая)

EPSS

Процентиль: 31%
0.00119
Низкий

7.8 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-427

Связанные уязвимости

github
больше 3 лет назад

In the Quick Access Service (QAAdminAgent.exe) in Acer Quick Access V2.01.3000 through 2.01.3027 and V3.00.3000 through V3.00.3008, a REGULAR user can load an arbitrary unsigned DLL into the signed service's process, which is running as NT AUTHORITY\SYSTEM. This is a DLL Hijacking vulnerability (including search order hijacking, which searches for the missing DLL in the PATH environment variable), which is caused by an uncontrolled search path element for nvapi.dll, atiadlxx.dll, or atiadlxy.dll.

EPSS

Процентиль: 31%
0.00119
Низкий

7.8 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-427