Логотип exploitDog
bind:CVE-2024-6871
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-6871

Количество 3

Количество 3

nvd логотип

CVE-2024-6871

около 1 года назад

G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of autostart tasks. The issue results from incorrect permissions set on folders. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22629.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-qxhm-xw2r-6r75

около 1 года назад

G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of autostart tasks. The issue results from incorrect permissions set on folders. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22629.

CVSS3: 7
EPSS: Низкий
fstec логотип

BDU:2024-10167

почти 2 года назад

Уязвимость средства антивирусной защиты G Data Total Security, связанная с некорректным присваиванием привилегий, позволяющая нарушителю повысить свои привилегии

CVSS3: 7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-6871

G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of autostart tasks. The issue results from incorrect permissions set on folders. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22629.

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-qxhm-xw2r-6r75

G DATA Total Security Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of G DATA Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the handling of autostart tasks. The issue results from incorrect permissions set on folders. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-22629.

CVSS3: 7
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-10167

Уязвимость средства антивирусной защиты G Data Total Security, связанная с некорректным присваиванием привилегий, позволяющая нарушителю повысить свои привилегии

CVSS3: 7
0%
Низкий
почти 2 года назад

Уязвимостей на страницу