CVE-2019-14935
PoC —CVSS 3.0
7.8 high
EPSS
<1%p31
Published
()
Modified
Description
3CX Phone 15 on Windows has insecure permissions on the "%PROGRAMDATA%\3CXPhone for Windows\PhoneApp" installation directory, allowing Full Control access for Everyone, and leading to privilege escalation because of a StartUp link.
- Vendors
- 3cx
- Products
- 3cx
- Weakness
- CWE-732
- Vector
- CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.