CVE-2022-23909
05.04.2022, 06:15
There is an unquoted service path in Sherpa Connector Service (SherpaConnectorService.exe) 2020.2.20328.2050. This might allow a local user to escalate privileges by creating a "C:\Program Files\Sherpa Software\Sherpa.exe" file.Enginsight
Vendor | Product | Version |
---|---|---|
gimmal | sherpa_connector_service | 2020.2.20328.2050 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References