An exploitable local privilege elevation vulnerability exists in the file system permissions of the Win-911 Enterprise V4.20.13 install directory via WIN-911 Account Change Utility. Depending on the vector chosen, an attacker can overwrite various executables which could lead to escalation of the privileges when executed.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: talos

Published:

Updated: 2024-08-04T12:18:18.441Z

Reserved: 2020-05-26T00:00:00

Link: CVE-2020-13540

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-01-05T16:15:14.220

Modified: 2024-11-21T05:01:27.403

Link: CVE-2020-13540

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.