PT-2023-19457 · Ks Soft · Advanced Host Monitor
Mrempy
·
Published
2023-04-29
·
Updated
2024-05-17
·
CVE-2023-2417
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
ks-soft Advanced Host Monitor versions up to 12.56
Description
A vulnerability was found in the software, classified as problematic, affecting some unknown functionality of the file C:Program Files (x86)HostMonitorRMA-Winrma active.exe. The manipulation leads to an unquoted search path, allowing an attack to be launched on the local host.
Recommendations
For versions up to 12.56, upgrade to version 12.60 to address this issue.
As a temporary workaround, consider restricting access to the file rma active.exe until the issue is resolved.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Advanced Host Monitor