WEG SuperDrive G2 12.0.0 Insecure File Permissions

Discussion in 'News Aggregator' started by Packet Storm, 20 Jan 2016.

  1. Packet Storm

    Packet Storm Guest

    SuperDrive suffers from an elevation of privileges vulnerability which can be used by a simple authenticated user that can change the executable file with a binary of choice. The vulnerability exist due to the improper permissions, with the 'C' flag (Change) for 'Authenticated Users' group.

    Continue reading...
     

Share This Page

Loading...