Lucene search

K
githubexploitC162AC13-F144-5D8A-A8F2-8708E115DE24
HistoryDec 02, 2021 - 8:18 p.m.

Exploit for Time-of-check Time-of-use (TOCTOU) Race Condition in Plex Media Server

2021-12-0220:18:08
416
plex media server
race condition
toctou
privilege escalation
cve-2021-42835
security researchers
bugsec
file integrity
digital signature
code execution
system context
callback function
rpc client

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Local Privilege PlEXcalasion - CVE-2021-42835

Plex Media Ser…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

CVSS3

7

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Related for C162AC13-F144-5D8A-A8F2-8708E115DE24