CVE Published: 13/08/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: krcert |
Vendor: ESTSOFT |
Product: ALTOOLS Update Service Status : PUBLISHED
CVE-2019-12808 Description
ALTOOLS update service 18.1 and earlier versions contains a local privilege escalation vulnerability due to insecure permission. An attacker can overwrite an executable that is launched as a service to exploit this vulnerability and execute arbitrary code with system privileges.