The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modification and may spawn an unexpected process with the administrative privilege. If a non-administrative user modifies the driver installation package and runs it on the target PC, an arbitrary program may be executed with the administrative privilege.
Metrics
Affected Vendors & Products
References
History
Thu, 12 Dec 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-352 | |
Metrics |
cvssV3_1
|
ssvc
|
MITRE
Status: PUBLISHED
Assigner: jpcert
Published: 2023-06-19T00:00:00
Updated: 2024-12-12T20:28:30.715Z
Reserved: 2023-05-11T00:00:00
Link: CVE-2023-30759
Vulnrichment
Updated: 2024-08-02T14:37:15.042Z
NVD
Status : Modified
Published: 2023-06-19T05:15:09.290
Modified: 2024-12-12T21:15:07.260
Link: CVE-2023-30759
Redhat
No data.