An local privilege escalation vulnerability due to a "runasroot" command in eScan Anti-Virus. This vulnerability is due to invalid arguments and insufficient execution conditions related to "runasroot" command. This vulnerability can induce remote attackers to exploit root privileges by manipulating parameter values.
References
Link | Resource |
---|---|
https://www.krcert.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=66596 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: krcert
Published: 2022-04-01T22:17:42
Updated: 2022-04-01T22:17:42
Reserved: 2021-02-03T00:00:00
Link: CVE-2021-26624
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-04-01T23:15:09.110
Modified: 2022-04-09T00:42:23.157
Link: CVE-2021-26624
JSON object: View
Redhat Information
No data.
CWE