Description
ZoneAlarm Anti-Ransomware before version 1.0.713 copies files for the report from a directory with low privileges. A sophisticated timed attacker can replace those files with malicious or linked content, such as exploiting CVE-2020-0896 on unpatched systems or using symbolic links. This allows an unprivileged user to enable escalation of privilege via local access.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-27166 | ZoneAlarm Anti-Ransomware before version 1.0.713 copies files for the report from a directory with low privileges. A sophisticated timed attacker can replace those files with malicious or linked content, such as exploiting CVE-2020-0896 on unpatched systems or using symbolic links. This allows an unprivileged user to enable escalation of privilege via local access. |
References
History
No history.
Status: PUBLISHED
Assigner: checkpoint
Published:
Updated: 2024-08-04T08:47:41.017Z
Reserved: 2020-01-07T00:00:00.000Z
Link: CVE-2020-6012
No data.
Status : Modified
Published: 2020-08-04T14:15:11.927
Modified: 2024-11-21T05:34:58.813
Link: CVE-2020-6012
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD