PT-2022-23357 · Scooter · Beyond Compare

Published

2022-07-23

·

Updated

2022-08-02

·

CVE-2022-36414

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Scooter Beyond Compare versions 4.2.0 through 4.4.2
Description The issue is an elevation of privilege breakout vulnerability in the Windows EXE installer. It allows a logged-in user to run applications with elevated privileges via the Clipboard Compare tray app after installation.
Recommendations For versions 4.2.0 through 4.4.2, update to version 4.4.3 or later to resolve the issue.

Fix

Related Identifiers

CVE-2022-36414

Affected Products

Beyond Compare