Описание
An issue in Sublime HQ Pty Ltd Sublime Text 4 4200 allows authenticated attackers with low-level privileges to escalate privileges to Administrator via replacing the uninstall file with a crafted binary in the installation folder. NOTE: this is disputed by the Supplier because replacing the uninstall file requires administrator permissions, i.e., there is no privilege escalation.
EPSS
Процентиль: 9%
0.00033
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-266
Связанные уязвимости
CVSS3: 6.5
debian
3 месяца назад
An issue in Sublime HQ Pty Ltd Sublime Text 4 4200 allows authenticate ...
CVSS3: 6.5
github
3 месяца назад
An issue in Sublime HQ Pty Ltd Sublime Text 4 4200 allows authenticated attackers with low-level privileges to escalate privileges to Administrator via replacing the uninstall file with a crafted binary in the installation folder.
EPSS
Процентиль: 9%
0.00033
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-266