Advertisement






Sophos SafeGuard Priivlege Escalation

CVE Category Price Severity
CVE-2018-6851 CWE-269 $10,000 Critical
Author Risk Exploitation Type Date
Unknown High Local 2018-07-08
CPE
cpe:cpe:(insert CPE URI string here)
CVSS EPSS EPSSP
CVSS:4.0/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:H 0.02192 0.50148

CVSS vector description

Our sensors found this exploit at: https://cxsecurity.com/ascii/WLB-2018070082

Below is a copy:

Sophos SafeGuard Priivlege Escalation
We have recently disclosed a list of vulnerabilities to Sophos that 
allow local attackers to elevate their privileges and execute code in 
the security context of the SYSTEM user account.

Affected Products:
SafeGuard Enterprise 8.00.4 and earlier (Fix: install 8.00.5)
SafeGuard Easy 7.00.2.35 and earlier (Fix: install 7.00.3)
SafeGuard LAN Crypt 3.95.1.13 and earlier (Fix: install 3.95.2)

For more information regarding these issues please visit: 
https://labs.nettitude.com/blog/cve-2018-6851-to-cve-2018-6857-sophos-privilege-escalation-vulnerabilities/

Cheers,
kyREcon


Copyright ©2024 Exploitalert.

This information is provided for TESTING and LEGAL RESEARCH purposes only.
All trademarks used are properties of their respective owners. By visiting this website you agree to Terms of Use and Privacy Policy and Impressum