Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-36603

Опубликовано: 14 сент. 2022
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

The HoYoVerse (formerly miHoYo) Genshin Impact mhyprot2.sys 1.0.0.0 anti-cheat driver does not adequately restrict unprivileged function calls, allowing local, unprivileged users to execute arbitrary code with SYSTEM privileges on Microsoft Windows systems. The mhyprot2.sys driver must first be installed by a user with administrative privileges.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hoyoverse:mhyprot2:1.0.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00603
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo
CWE-269

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

The HoYoVerse (formerly miHoYo) Genshin Impact mhyprot2.sys 1.0.0.0 anti-cheat driver does not adequately restrict unprivileged function calls, allowing local, unprivileged users to execute arbitrary code with SYSTEM privileges on Microsoft Windows systems. The mhyprot2.sys driver must first be installed by a user with administrative privileges.

EPSS

Процентиль: 69%
0.00603
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo
CWE-269