Goverlan Reach Console before 9.50, Goverlan Reach Server before 3.50, and Goverlan Client Agent before 9.20.50 have an Untrusted Search Path that leads to Command Injection and Local Privilege Escalation via DLL hijacking.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-02-16T19:00:22

Updated: 2024-08-05T02:39:09.936Z

Reserved: 2020-02-16T00:00:00

Link: CVE-2019-20456

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-02-16T19:15:10.457

Modified: 2020-02-26T15:10:12.293

Link: CVE-2019-20456

cve-icon Redhat

No data.