An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. Built-in features of Windows (desktop shortcuts, narrator) can be abused for privilege escalation.
References
Link Resource
https://docs.opswat.com/mdkiosk Product Release Notes
https://docs.opswat.com/mdkiosk/release-notes/cve-2023-36657 Release Notes Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-09-15T00:00:00

Updated: 2023-09-15T05:11:16.379165

Reserved: 2023-06-25T00:00:00


Link: CVE-2023-36657

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-09-15T06:15:07.810

Modified: 2023-09-19T13:09:27.470


Link: CVE-2023-36657

JSON object: View

cve-icon Redhat Information

No data.

CWE