Total
4 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-38604 | 2 Microsoft, Wacom | 2 Windows, Driver | 2024-02-04 | N/A | 7.3 HIGH |
Wacom Driver 6.3.46-1 for Windows and lower was discovered to contain an arbitrary file deletion vulnerability. | |||||
CVE-2022-43293 | 1 Wacom | 1 Driver | 2024-02-04 | N/A | 5.9 MEDIUM |
Wacom Driver 6.3.46-1 for Windows was discovered to contain an arbitrary file write vulnerability via the component \Wacom\Wacom_Tablet.exe. | |||||
CVE-2019-5012 | 2 Apple, Wacom | 2 Macos, Driver | 2024-02-04 | 7.2 HIGH | 7.8 HIGH |
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the startProcess command. The command takes a user-supplied script argument and executes it under root context. A user with local access can use this vulnerability to raise their privileges to root. An attacker would need local access to the machine for a successful exploit. | |||||
CVE-2019-5013 | 2 Apple, Wacom | 2 Macos, Driver | 2024-02-04 | 7.2 HIGH | 7.8 HIGH |
An exploitable privilege escalation vulnerability exists in the Wacom, driver version 6.3.32-3, update helper service in the start/stopLaunchDProcess command. The command takes a user-supplied string argument and executes launchctl under root context. A user with local access can use this vulnerability to raise load arbitrary launchD agents. An attacker would need local access to the machine for a successful exploit. |