Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-22038

Опубликовано: 29 окт. 2021
Источник: nvd
CVSS3: 8.8
CVSS2: 6.5
EPSS Низкий

Описание

On Windows, the uninstaller binary copies itself to a fixed temporary location, which is then executed (the originally called uninstaller exits, so it does not block the installation directory). This temporary location is not randomized and does not restrict access to Administrators only so a potential attacker could plant a binary to replace the copied binary right before it gets called, thus gaining Administrator privileges (if the original uninstaller was executed as Administrator). The vulnerability only affects Windows installers.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:vmware:installbuilder:*:*:*:*:*:windows:*:*
Версия до 21.6.0 (исключая)

EPSS

Процентиль: 71%
0.00672
Низкий

8.8 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-330

Связанные уязвимости

github
больше 3 лет назад

On Windows, the uninstaller binary copies itself to a fixed temporary location, which is then executed (the originally called uninstaller exits, so it does not block the installation directory). This temporary location is not randomized and does not restrict access to Administrators only so a potential attacker could plant a binary to replace the copied binary right before it gets called, thus gaining Administrator privileges (if the original uninstaller was executed as Administrator). The vulnerability only affects Windows installers.

CVSS3: 8.8
fstec
больше 4 лет назад

Уязвимость инструмента для разработки и автоматического обновления установщиков VMware InstallBuilder для операционных систем Windows, связанная с использованием недостаточно случайных значений, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 71%
0.00672
Низкий

8.8 High

CVSS3

6.5 Medium

CVSS2

Дефекты

CWE-330