cve/2023/CVE-2023-50915.md
2024-06-22 09:37:59 +00:00

947 B

CVE-2023-50915

Description

An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite and corrupt critical system files via a combination of an NTFS Junction and an RPC Object Manager symbolic link and could result in a denial of service.

POC

Reference

Github