CVE-2019-25245
Ross Video DashBoard 8.5.1 Privilege Escalation via Insecure Permissions
Ross Video DashBoard 8.5.1 contains an elevation of privileges vulnerability that allows authenticated users to modify executable files due to improper permission settings. Attackers can exploit the 'M' or 'C' flags for 'Authenticated Users' group to replace the DashBoard.exe binary with a malicious executable.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
Ross Video Ltd. · DashBoardWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →