vendor:
Iperius Backup
by:
bzyo
7.2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: Iperius Backup
Affected Version From: 6.1.0
Affected Version To: 6.1.0
Patch Exists: NO
Related CWE: N/A
CPE: a:iperius_software:iperius_backup:6.1.0
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 10 x64
2019
Iperius Backup 6.1.0 – Privilege Escalation
Iperius Backup Service must run as Local System or a system administrator. By default the application allows for low privilege users to create/run backup jobs and edit existing jobs due to file permissions. An option when creating a backup job is to run a program before or after the backup job. The backup job is run as the user of the running service, as such the program requested to run before or after a backup job is run as that same user. A low privilege user could abuse this and escalate their privileges to either local system or an administrator account.
Mitigation:
Ensure that Iperius Backup Service is running with the least privileges necessary and that only authorized users are allowed to create/run backup jobs and edit existing jobs.