Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2022-06-15 19:15
Updated : 2024-11-21 07:04
NVD link : CVE-2022-31216
Mitre link : CVE-2022-31216
CVE.ORG link : CVE-2022-31216
JSON object : View
Products Affected
                abb
- automation_builder
- mint_workbench
- drive_composer
CWE
                
                    
                        
                        CWE-59
                        
            Improper Link Resolution Before File Access ('Link Following')
