Vulnerability Description
A local privilege escalation vulnerability was identified within the "luminati_net_updater_win_eagleget_com" service in EagleGet Downloader version 2.1.5.20 Stable. This issue allows authenticated non-administrative user to escalate their privilege and conduct code execution as a SYSTEM privilege.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Softonic | Eagleget | < 2.1.6.40 |
Related Weaknesses (CWE)
References
- http://eagleget.comBroken Link
- https://medium.com/%40n1pwn/local-privilege-escalation-in-eagleget-1fde79fe47c0
- http://eagleget.comBroken Link
- https://medium.com/%40n1pwn/local-privilege-escalation-in-eagleget-1fde79fe47c0
FAQ
What is CVE-2020-21046?
CVE-2020-21046 is a vulnerability with a CVSS score of 7.8 (HIGH). A local privilege escalation vulnerability was identified within the "luminati_net_updater_win_eagleget_com" service in EagleGet Downloader version 2.1.5.20 Stable. This issue allows authenticated non...
How severe is CVE-2020-21046?
CVE-2020-21046 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-21046?
Check the references section above for vendor advisories and patch information. Affected products include: Softonic Eagleget.