Описание
Clevo HotKey Clipboard 2.1.0.6 contains an unquoted service path vulnerability in the HKClipSvc service that allows local non-privileged users to potentially execute code with system privileges. Attackers can exploit the misconfigured service path to inject and execute arbitrary code by placing malicious executables in specific file system locations.
EPSS
Процентиль: 1%
0.00012
Низкий
8.4 High
CVSS3
Дефекты
CWE-428
Связанные уязвимости
CVSS3: 8.4
github
24 дня назад
Clevo HotKey Clipboard 2.1.0.6 contains an unquoted service path vulnerability in the HKClipSvc service that allows local non-privileged users to potentially execute code with system privileges. Attackers can exploit the misconfigured service path to inject and execute arbitrary code by placing malicious executables in specific file system locations.
EPSS
Процентиль: 1%
0.00012
Низкий
8.4 High
CVSS3
Дефекты
CWE-428