#VU91256 Incorrect default permissions in VisiWin 7 - CVE-2023-31468
Published: June 6, 2024 / Updated: October 25, 2024
VisiWin 7
Inosoft
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to incorrect default permissions for files and folders that are set by the application. A local user can add and modify certain files that hold SYSTEM privileges and gain elevated privileges on the target system.