CVE-2019-18822

CVE-2019-18822

A privilege escalation vulnerability in ZOOM Call Recording 6.3.1 allows its user account (i.e., the account under which the program runs – by default, the callrec account) to elevate privileges to root by abusing the [email protected]. The [email protected] starts the /opt/callrec/bin/rs binary with root privileges, and this binary is owned by callrec. It can be replaced by a Trojan horse.

Source: CVE-2019-18822

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다