Missing authorization vulnerability exists in Unifier and...
Critical severity
Unreviewed
Published
May 31, 2024
to the GitHub Advisory Database
•
Updated Aug 15, 2024
Description
Published by the National Vulnerability Database
May 31, 2024
Published to the GitHub Advisory Database
May 31, 2024
Last updated
Aug 15, 2024
Missing authorization vulnerability exists in Unifier and Unifier Cast Version.5.0 or later, and the patch "20240527" not applied. If this vulnerability is exploited, arbitrary code may be executed with LocalSystem privilege. As a result, a malicious program may be installed, data may be modified or deleted.
References