CVE-2018-10959
17.04.2019, 15:29
Avecto Defendpoint 4 prior to 4.4 SR6 and 5 prior to 5.1 SR1 has an Untrusted Search Path vulnerability, exploitable by modifying environment variables to trigger automatic elevation of an attacker's process launch.Enginsight
Vendor | Product | Version |
---|---|---|
beyondtrust | avecto_defendpoint | 4.0 ≤ 𝑥 < 4.4.267.0 |
beyondtrust | avecto_defendpoint | 5.0 ≤ 𝑥 < 5.1.149.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References