A vulnerability in CyberLink Power Director v14 allows attackers to escalate privileges via a crafted .exe file.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Link | Tags |
---|---|
http://power.com | product |
http://cyberlink.com | vendor advisory |
https://www.youtube.com/watch?v=r75k-ae3_ng | third party advisory exploit |
https://youtu.be/B46wtd-ZNog | third party advisory exploit |