Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-20713

Опубликовано: 24 мая 2021
Источник: nvd
CVSS3: 7.8
CVSS2: 4.6
EPSS Низкий

Описание

Privilege escalation vulnerability in QND Advance/Premium/Standard Ver.11.0.4i and earlier allows an attacker who can log in to the PC where the product's Windows client is installed to gain administrative privileges via unspecified vectors. As a result, sensitive information may be altered/obtained or unintended operations may be performed.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:qualitysoft:qnd:*:*:*:*:advance:*:*:*
Версия до 11.0.4i (включая)
cpe:2.3:a:qualitysoft:qnd:*:*:*:*:premium:*:*:*
Версия до 11.0.4i (включая)
cpe:2.3:a:qualitysoft:qnd:*:*:*:*:standard:*:*:*
Версия до 11.0.4i (включая)

EPSS

Процентиль: 15%
0.00049
Низкий

7.8 High

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-269

Связанные уязвимости

github
больше 3 лет назад

Privilege escalation vulnerability in QND Advance/Premium/Standard Ver.11.0.4i and earlier allows an attacker who can log in to the PC where the product's Windows client is installed to gain administrative privileges via unspecified vectors. As a result, sensitive information may be altered/obtained or unintended operations may be performed.

EPSS

Процентиль: 15%
0.00049
Низкий

7.8 High

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-269