Main
Vulnerability Database
Exploits
ID:10653 - Exploit for Incorrect default permissions in VisiWin 7 - CVE-2023-31468
ID:10653 - Exploit for Incorrect default permissions in VisiWin 7 - CVE-2023-31468
Published: October 25, 2024
Vulnerability identifier: #VU91256
Vulnerability risk: Low
CVE-ID: CVE-2023-31468
CWE-ID: CWE-276
Exploitation vector: Local access
Vulnerable software:
VisiWin 7
VisiWin 7
Link to public exploit:
Vulnerability description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to incorrect default permissions for files and folders that are set by the application. A local user can add and modify certain files that hold SYSTEM privileges and gain elevated privileges on the target system.
Remediation
Install updates from vendor's website.