vendor:
WinGate
by:
hyp3rlinx
7.8
CVSS
HIGH
Insecure Permissions EoP
264
CWE
Product Name: WinGate
Affected Version From: 9.4.1.5998
Affected Version To: 9.4.1.5998
Patch Exists: YES
Related CWE: CVE-2020-13866
CPE: a:deerfield:wingate:9.4.1.5998
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: None
2020
WinGate 9.4.1.5998 – Insecure Folder Permissions
WinGate has insecure permissions for the installation directory, which allows local users ability to gain privileges by replacing an executable file with a Trojan horse. The WinGate directory hands (F) full control to authenticated users, who can then run arbitrary code as SYSTEM after a WinGate restart or system reboot.
Mitigation:
Upgrade to WinGate v9.4.2.6002 or later.