JumpCloud Agent before 1.178.0 Creates a Temporary File in a Directory with Insecure Permissions. This allows privilege escalation to SYSTEM via a repair action in the installer.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-04-26 20:15
Updated : 2024-07-03 01:39
NVD link : CVE-2023-26603
Mitre link : CVE-2023-26603
CVE.ORG link : CVE-2023-26603
JSON object : View
Products Affected
No product.
CWE
CWE-378
Creation of Temporary File With Insecure Permissions