Security Advisory

CVE-2018-10959

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-04-17 14:34:19
Last updated 2024-08-05 07:54:36
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Avecto Defendpoint 4 prior to 4.4 SR6 and 5 prior to 5.1 SR1 has an Untrusted Search Path vulnerability, exploitable by modifying environment variables to trigger automatic elevation of an attacker's process launch.