ZeroHour

CVE-2022-28226

CVSS 3.1
7.8 high
EPSS
<1%p31
Published
()
Modified
Description

Local privilege vulnerability in Yandex Browser for Windows prior to 22.3.3.801 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating temporary files in directory with insecure permissions during Yandex Browser update process.

Vendors
yandex
Products
yandex browser
Weakness
CWE-668
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.