LiteManager 4.5.0 has weak permissions (Everyone: Full Control) in the "LiteManagerFree - Server" folder, as demonstrated by ROMFUSClient.exe.
During installation, installed file permissions are set to allow anyone to modify those files.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/47706 | third party advisory vdb entry exploit |