Vulnerability Description
Insecure permissions configuration in Adaware Protect v1.2.439.4251 allows attackers to escalate privileges via changing the service binary path.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adaware | Protect | 1.2.439.4251 |
Related Weaknesses (CWE)
References
- https://r0h1rr1m.medium.com/adaware-protect-local-privilege-escalation-through-iExploitThird Party Advisory
- https://www.adaware.com/Product
- https://r0h1rr1m.medium.com/adaware-protect-local-privilege-escalation-through-iExploitThird Party Advisory
- https://www.adaware.com/Product
FAQ
What is CVE-2022-31464?
CVE-2022-31464 is a vulnerability with a CVSS score of 7.8 (HIGH). Insecure permissions configuration in Adaware Protect v1.2.439.4251 allows attackers to escalate privileges via changing the service binary path.
How severe is CVE-2022-31464?
CVE-2022-31464 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-31464?
Check the references section above for vendor advisories and patch information. Affected products include: Adaware Protect.