In the version 12.1.0.1004 and below of 360 Total Security, when the main process of 360 Total Security calls GameChrome.exe, there exists a local privilege escalation vulnerability. An attacker who could exploit DLL hijacking to bypass the hips could execute arbitrary code on the Local system.
References
Link | Resource |
---|---|
https://security.360.cn/News/news/id/232 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: 360ST
Published: 2020-07-21T17:04:50
Updated: 2020-07-21T17:04:50
Reserved: 2020-07-14T00:00:00
Link: CVE-2020-15723
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-07-21T18:15:20.067
Modified: 2021-07-21T11:39:23.747
Link: CVE-2020-15723
JSON object: View
Redhat Information
No data.
CWE