Description
In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-7537 | In Ivanti WorkSpace Control before 10.4.40.0, a user can elevate rights on the system by hijacking certain user registries. This is possible because pwrgrid.exe first checks the Current User registry hives (HKCU) when starting an application with elevated rights. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T01:33:17.067Z
Reserved: 2019-10-01T00:00:00.000Z
Link: CVE-2019-17066
No data.
Status : Modified
Published: 2020-05-18T22:15:12.703
Modified: 2024-11-21T04:31:38.223
Link: CVE-2019-17066
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD