Описание
GE Communicator, all versions prior to 4.0.517, allows a non-administrative user to replace the uninstaller with a malicious version, which could allow an attacker to gain administrator privileges to the system.
Ссылки
- MitigationThird Party AdvisoryUS Government Resource
- MitigationThird Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 4.0.517 (исключая)
cpe:2.3:a:ge:ge_communicator:*:*:*:*:*:*:*:*
EPSS
Процентиль: 10%
0.00035
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-284
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
GE Communicator, all versions prior to 4.0.517, allows a non-administrative user to replace the uninstaller with a malicious version, which could allow an attacker to gain administrator privileges to the system.
EPSS
Процентиль: 10%
0.00035
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-284
NVD-CWE-Other