vendor:
Mailtraq
by:
Unknown
5.5
CVSS
MEDIUM
Privilege Escalation
269
CWE
Product Name: Mailtraq
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:mailtraq:mailtraq
Platforms Tested: Windows
Unknown
Privilege Escalation in Mailtraq Administration Console
A local user can exploit the administration console interface in Mailtraq to escalate privileges. By double-clicking on the Mailtraq icon in the Taskbar, right-clicking in the right text pane and choosing View Source, and then opening cmd.exe with SYSTEM privileges, the user can launch a command prompt with elevated privileges.
Mitigation:
There is no known mitigation for this vulnerability.