NoMachine for Windows prior to version 6.15.1 and 7.5.2 suffer from local privilege escalation due to the lack of safe DLL loading. This vulnerability allows local non-privileged users to perform DLL Hijacking via any writable directory listed under the system path and ultimately execute code as NT AUTHORITY\SYSTEM.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2022-04-28T10:57:43
Updated: 2024-08-03T23:50:42.793Z
Reserved: 2021-05-20T00:00:00
Link: CVE-2021-33436
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-28T11:15:07.720
Modified: 2024-11-21T06:08:48.907
Link: CVE-2021-33436
Redhat
No data.