### [CVE-2019-12177](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-12177) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Privilege escalation due to insecure directory permissions affecting ViveportDesktopService in HTC VIVEPORT before 1.0.0.36 allows local attackers to escalate privileges via DLL hijacking. ### POC #### Reference - https://huskersec.com/privilege-escalation-via-htc-viveport-desktop-c93471ff87c8 - https://huskersec.com/privilege-escalation-via-htc-viveport-desktop-c93471ff87c8 - https://posts.specterops.io/razer-synapse-3-elevation-of-privilege-6d2802bd0585 - https://posts.specterops.io/razer-synapse-3-elevation-of-privilege-6d2802bd0585 #### Github No PoCs found on GitHub currently.