vendor:
WebDrive
by:
Nine:Situations:Group::bellick
N/A
CVSS
N/A
Local Elevation Of Privileges
Unknown
CWE
Product Name: WebDrive
Affected Version From: WebDrive 9.02 build 2232
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Platforms Tested: Microsoft Windows XP SP3
Unknown
South River Technologies WebDrive Service Bad Security Descriptor Local Elevation Of Privileges
The 'WebDrive Service' is installed with an empty security descriptor. A malicious user can stop the service, then invoke the 'sc config' command to replace the binary path with a value of choice, then restart the service to run the command with SYSTEM privileges.
Mitigation:
Change the security descriptor of the service to prevent exploitation.