CVE-2020-17381
PoC —CVSS 3.1
7.3 high
EPSS
<1%p33
Published
()
Modified
Description
An issue was discovered in Ghisler Total Commander 9.51. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the %SYSTEMDRIVE%\totalcmd\TOTALCMD64.EXE binary.
- Vendors
- ghisler
- Products
- total commander
- Weakness
- CWE-276
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.