← volver
CVE-2022-26057

Mint WorkBench Link Following Local Privilege Escalation Vulnerability

CVSS 6.7 MEDIUMEPSS 0.2%CWE-269
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 6.7EPSS 0.2%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
15 jun 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Vulnerabilities in the Mint WorkBench allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Mint WorkBench installer file allows a low-privileged user to run a "repair" operation on the product
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Productos afectados
ABB · Mint WorkBench

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →