cve/2021/CVE-2021-35312.md
2024-06-18 02:51:15 +02:00

880 B

CVE-2021-35312

Description

A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7. The Amica Prodigy's executable "RemoteBackup.Service.exe" has incorrect permissions, allowing a local unprivileged user to replace it with a malicious file that will be executed with "LocalSystem" privileges.

POC

Reference

Github

No PoCs found on GitHub currently.