vendor:
Zend Studio IDE
by:
John Page aka hyp3rlinx
8,8
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: Zend Studio IDE
Affected Version From: 13.5.1
Affected Version To: 13.5.1
Patch Exists: YES
Related CWE: N/A
CPE: a:zend:zend_studio
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2018
ZendStudio IDE Privilege Escalation
Zend Studio IDE v13.5.1 is vulnerable to privilege escalation due to weak insecure permissions settings on its files/directory as the “Everyone” group has full access on it. This allows low privileged users to execute arbitrary code in the security context of any other users with elevated privileges on the affected system. An attacker can replace, modify or change the file, allowing them to inject code or replace the ZendStudio executable and have it run in the context of the system.
Mitigation:
The vendor recommends to set the permissions of the ZendStudio.exe file to read-only for all users.