Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the executable file.
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
Link | Tags |
---|---|
http://mobiletrans.com | product |
https://packetstormsecurity.com/files/172466/MobileTrans-4.0.11-Weak-Service-Permissions.html | third party advisory vdb entry exploit |