An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is installed with insecure permissions (full write access within Program Files). Standard users can replace files within this directory that get executed with elevated privileges, leading to a complete arbitrary code execution (elevation of privileges).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-04-04T00:00:00

Updated: 2024-08-03T15:10:59.697Z

Reserved: 2023-01-06T00:00:00

Link: CVE-2022-48224

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-04-04T16:15:07.230

Modified: 2023-04-11T14:53:32.503

Link: CVE-2022-48224

cve-icon Redhat

No data.