Логотип exploitDog
bind:CVE-2020-11443
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-11443

Количество 2

Количество 2

nvd логотип

CVE-2020-11443

почти 6 лет назад

The Zoom IT installer for Windows (ZoomInstallerFull.msi) prior to version 4.6.10 deletes files located in %APPDATA%\Zoom before installing an updated version of the client. Standard users are able to write to this directory, and can write links to other directories on the machine. As the installer runs with SYSTEM privileges and follows these links, a user can cause the installer to delete files that otherwise cannot be deleted by the user.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-wc6m-2q93-p5qr

больше 3 лет назад

The MSI installer in Zoom before 4.6.10 on Windows follows Symbolic Links.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-11443

The Zoom IT installer for Windows (ZoomInstallerFull.msi) prior to version 4.6.10 deletes files located in %APPDATA%\Zoom before installing an updated version of the client. Standard users are able to write to this directory, and can write links to other directories on the machine. As the installer runs with SYSTEM privileges and follows these links, a user can cause the installer to delete files that otherwise cannot be deleted by the user.

CVSS3: 8.1
0%
Низкий
почти 6 лет назад
github логотип
GHSA-wc6m-2q93-p5qr

The MSI installer in Zoom before 4.6.10 on Windows follows Symbolic Links.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу