?In Keysight Geolocation Server v2.4.2 and prior, a...
High severity
Unreviewed
Published
Jul 20, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Jul 19, 2023
Published to the GitHub Advisory Database
Jul 20, 2023
Last updated
Apr 4, 2024
?In Keysight Geolocation Server v2.4.2 and prior, a low privileged attacker could create a local ZIP file containing a malicious script in any location. The attacker could abuse this to load a DLL with SYSTEM privileges.
References