In DriverGenius 9.61.5480.28 there is a local privilege escalation vulnerability in the driver wizard, attackers can use constructed programs to increase user privileges.
References
Link | Resource |
---|---|
https://github.com/y5s5k5/POCtemp8 | Broken Link Third Party Advisory |
https://github.com/y5s5k5/CVE-2020-23740 | Broken Link Third Party Advisory |
http://www.drivergenius.com/ | Product |
https://www.cnvd.org.cn/flaw/show/2438470 | Third Party Advisory |
Configurations
Information
Published : 2020-12-03 11:15
Updated : 2021-07-21 04:39
NVD link : CVE-2020-23740
Mitre link : CVE-2020-23740
JSON object : View
CWE
CWE-862
Missing Authorization
Products Affected
drivergenius
- drivergenius