Dr.Web Security Space versions 11 and 12 allow elevation of privilege for local users without administrative privileges to NT AUTHORITY\SYSTEM due to insufficient control during autoupdate.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Link | Tags |
---|---|
https://amonitoring.ru/article/drweb/ | third party advisory exploit |
https://habr.com/ru/company/pm/blog/509592/ | third party advisory exploit |
https://www.youtube.com/watch?v=q7Kqi7kE59U | third party advisory exploit |