An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer package for the Client V3 services, allowing for local user privilege escalation by overwriting the executable file via an alternative data stream. NOTE: this is not the same as CVE-2021-31859.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-09-06T20:32:12

Updated: 2024-08-03T10:45:52.959Z

Reserved: 2022-08-12T00:00:00

Link: CVE-2022-38176

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-09-06T21:15:08.967

Modified: 2022-09-09T19:26:21.257

Link: CVE-2022-38176

cve-icon Redhat

No data.