IT

Tracker / CVE-2020-14418

CVE-2020-14418

High 7.0

A TOCTOU vulnerability exists in madCodeHook before 2020-07-16 that allows local attackers to elevate their privileges to SYSTEM. This occurs because path redirection can occur via vectors involving directory junctions.

Affected products and versions

cisco advanced_malware_protection · … → 7.2.13
madshi madcodehook · … → 4.1.3
morphisec unified_threat_prevention_platform · … → 3.5.9
morphisec unified_threat_prevention_platform · 4.0 → 4.1.2

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References