mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-16 20:27:21 +00:00
18 lines
861 B
Markdown
18 lines
861 B
Markdown
|
|
### [CVE-2023-3514](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3514)
|
||
|
|

|
||
|
|

|
||
|
|

|
||
|
|
|
||
|
|
### Description
|
||
|
|
|
||
|
|
Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a malicious actor with local access to gain SYSTEM privilege via communicating with the named pipe as a low-privilege user and calling "AddModule" or "UninstallModules" command to execute arbitrary executable file.
|
||
|
|
|
||
|
|
### POC
|
||
|
|
|
||
|
|
#### Reference
|
||
|
|
- https://starlabs.sg/advisories/23/23-3514/
|
||
|
|
|
||
|
|
#### Github
|
||
|
|
- https://github.com/star-sg/CVE
|
||
|
|
|