Vulnerability Description
BestXsoftware Best Free Keylogger before 6.0.0 allows local users to gain privileges via a Trojan horse "%PROGRAMFILES%\BFK 5.2.9\syscrb.exe" file because of insecure permissions for the BUILTIN\Users group.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bestxsoftware | Best Free Keylogger | <= 5.2.9 |
Related Weaknesses (CWE)
References
- https://github.com/ilsani/rd/tree/master/security-advisories/bestxsoftware/cve-2Third Party Advisory
- https://github.com/ilsani/rd/tree/master/security-advisories/bestxsoftware/cve-2Third Party Advisory
FAQ
What is CVE-2018-18519?
CVE-2018-18519 is a vulnerability with a CVSS score of 7.8 (HIGH). BestXsoftware Best Free Keylogger before 6.0.0 allows local users to gain privileges via a Trojan horse "%PROGRAMFILES%\BFK 5.2.9\syscrb.exe" file because of insecure permissions for the BUILTIN\Users...
How severe is CVE-2018-18519?
CVE-2018-18519 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-18519?
Check the references section above for vendor advisories and patch information. Affected products include: Bestxsoftware Best Free Keylogger.