Filtered by vendor Win-911 Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-23104 1 Win-911 2 Win-911 2021 R1, Win-911 2021 R2 2024-09-17 5.6 Medium
WIN-911 2021 R1 and R2 are vulnerable to a permissions misconfiguration that may allow an attacker to locally write files to the program Operator Workspace directory, which holds DLL files and executables. A low-privilege attacker could write a malicious DLL file to the Operator Workspace directory to achieve privilege escalation and the permissions of the user running the program.
CVE-2022-23922 1 Win-911 2 Win-911 2021 R1, Win-911 2021 R2 2024-09-16 5.6 Medium
WIN-911 2021 R1 and R2 are vulnerable to a permissions misconfiguration that may allow an attacker to locally write files to the Program Announcer directory and elevate permissions whenever the program is executed.