PT-2021-7470 · Microsoft+1 · Windows Installer+1
Ronnie Salomonsen
·
Published
2021-09-30
·
Updated
2023-01-31
·
CVE-2022-22187
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Juniper Networks Juniper Identity Management Service (JIMS) versions prior to 1.4.0
Description
An Improper Privilege Management issue in the Windows Installer framework used in Juniper Networks Juniper Identity Management Service (JIMS) allows an unprivileged user to trigger a repair operation. This operation triggers file operations in the %TEMP% folder, some of which are performed from a SYSTEM context, including the execution of temporary files. An attacker may provide malicious binaries to the Windows Installer, which will be executed with high privilege, leading to a local privilege escalation.
Recommendations
For Juniper Networks Juniper Identity Management Service (JIMS) versions prior to 1.4.0, update to version 1.4.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the Windows Installer service to minimize the risk of exploitation. Avoid using the Windows Installer framework to trigger repair operations until the issue is resolved.
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Juniper Identity Management Service
Windows Installer