Логотип exploitDog
bind:CVE-2025-0867
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-0867

Количество 3

Количество 3

nvd логотип

CVE-2025-0867

12 месяцев назад

The standard user uses the run as function to start the MEAC applications with administrative privileges. To ensure that the system can startup on its own, the credentials of the administrator were stored. Consequently, the EPC2 user can execute any command with administrative privileges. This allows a privilege escalation to the administrative level.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-5gcv-59gg-xc7c

12 месяцев назад

The standard user uses the run as function to start the MEAC applications with administrative privileges. To ensure that the system can startup on its own, the credentials of the administrator were stored. Consequently, the EPC2 user can execute any command with administrative privileges. This allows a privilege escalation to the administrative level.

CVSS3: 9.9
EPSS: Низкий
fstec логотип

BDU:2025-01879

12 месяцев назад

Уязвимость функции the runas микропрограммного обеспечения цифровой аналитической системы MEAC300, позволяющая нарушителю повысить свои привилегии до уровня администратора

CVSS3: 9.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-0867

The standard user uses the run as function to start the MEAC applications with administrative privileges. To ensure that the system can startup on its own, the credentials of the administrator were stored. Consequently, the EPC2 user can execute any command with administrative privileges. This allows a privilege escalation to the administrative level.

CVSS3: 9.9
0%
Низкий
12 месяцев назад
github логотип
GHSA-5gcv-59gg-xc7c

The standard user uses the run as function to start the MEAC applications with administrative privileges. To ensure that the system can startup on its own, the credentials of the administrator were stored. Consequently, the EPC2 user can execute any command with administrative privileges. This allows a privilege escalation to the administrative level.

CVSS3: 9.9
0%
Низкий
12 месяцев назад
fstec логотип
BDU:2025-01879

Уязвимость функции the runas микропрограммного обеспечения цифровой аналитической системы MEAC300, позволяющая нарушителю повысить свои привилегии до уровня администратора

CVSS3: 9.9
0%
Низкий
12 месяцев назад

Уязвимостей на страницу