Описание
PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains DLL Hijacking Vulnerabilities. A regular user (non-admin) can exploit these issues to potentially escalate privileges and execute arbitrary code in the context of NT AUTHORITY\SYSTEM.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:dell:powerpath:7.0:*:*:*:*:windows:*:*
cpe:2.3:a:dell:powerpath:7.1:*:*:*:*:windows:*:*
cpe:2.3:a:dell:powerpath:7.2:*:*:*:*:windows:*:*
EPSS
Процентиль: 14%
0.00046
Низкий
6.7 Medium
CVSS3
7.3 High
CVSS3
Дефекты
CWE-427
Связанные уязвимости
CVSS3: 6.7
github
около 2 лет назад
PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains DLL Hijacking Vulnerabilities. A regular user (non-admin) can exploit these issues to potentially escalate privileges and execute arbitrary code in the context of NT AUTHORITY\SYSTEM.
EPSS
Процентиль: 14%
0.00046
Низкий
6.7 Medium
CVSS3
7.3 High
CVSS3
Дефекты
CWE-427