Описание
Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a malicious actor with local access to gain SYSTEM privilege via communicating with the named pipe as a low-privilege user and triggering an insecure .NET deserialization.
Ссылки
- ExploitTechnical DescriptionVendor Advisory
- ExploitTechnical DescriptionVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.11.0.558 (включая)
cpe:2.3:a:razer:razer_central:*:*:*:*:*:windows:*:*
EPSS
Процентиль: 27%
0.00096
Низкий
7.8 High
CVSS3
Дефекты
CWE-269
CWE-269
Связанные уязвимости
CVSS3: 7.8
github
больше 2 лет назад
Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a malicious actor with local access to gain SYSTEM privilege via communicating with the named pipe as a low-privilege user and triggering an insecure .NET deserialization.
EPSS
Процентиль: 27%
0.00096
Низкий
7.8 High
CVSS3
Дефекты
CWE-269
CWE-269