In Malwarebytes before 4.5.23, a symbolic link may be used delete any arbitrary file on the system by exploiting the local quarantine system. It can also lead to privilege escalation in certain scenarios.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-03-23T00:00:00
Updated: 2024-08-02T11:39:06.567Z
Reserved: 2023-02-20T00:00:00
Link: CVE-2023-26088
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-03-23T01:15:12.180
Modified: 2024-11-21T07:50:45.127
Link: CVE-2023-26088
Redhat
No data.