CVE-2023-2331

Unquoted service Path or Element vulnerability in 42Gears Surelock Windows SureLock Service (NixService.Exe) on Windows application will allows to insert arbitrary code into the service. This issue affects Surelock Windows : from 2.3.12 through 2.40.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:42gears:surelock:*:*:*:*:*:windows:*:*

History

08 May 2023, 18:12

Type Values Removed Values Added
CPE cpe:2.3:a:42gears:surelock:*:*:*:*:*:windows:*:*
CWE CWE-428
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References
  • (MISC) https://www.42gears.com/security-and-compliance/42g-2023-001/ - Vendor Advisory
References (MISC) https://www.42gears.com/security-and-compliance - (MISC) https://www.42gears.com/security-and-compliance - Not Applicable

28 Apr 2023, 08:15

Type Values Removed Values Added
Summary Unquoted Search Path or Element vulnerability in 42Gears Surelock Windows SureLock Service (NixService.Exe) on Windows allows Privilege Escalation, Local Execution of Code.This issue affects Surelock Windows : 2.40.0. Unquoted service Path or Element vulnerability in 42Gears Surelock Windows SureLock Service (NixService.Exe) on Windows application will allows to insert arbitrary code into the service. This issue affects Surelock Windows : from 2.3.12 through 2.40.0.

27 Apr 2023, 12:57

Type Values Removed Values Added
New CVE

Information

Published : 2023-04-27 12:15

Updated : 2024-02-04 23:37


NVD link : CVE-2023-2331

Mitre link : CVE-2023-2331

CVE.ORG link : CVE-2023-2331


JSON object : View

Products Affected

42gears

  • surelock
CWE
CWE-428

Unquoted Search Path or Element