ZeroHour

CVE-2018-10959

CVSS 3.0
7.5 high
EPSS
2%p74
Published
()
Modified
Description

Avecto Defendpoint 4 prior to 4.4 SR6 and 5 prior to 5.1 SR1 has an Untrusted Search Path vulnerability, exploitable by modifying environment variables to trigger automatic elevation of an attacker's process launch.

Vendors
beyondtrust
Products
avecto defendpoint
Weakness
CWE-426
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.