Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-15752
HistoryAug 28, 2019 - 9:15 p.m.

Command injection

2019-08-2821:15:00
PRIOn knowledge base
www.prio-n.com
13

7.7 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

79.2%

Docker Desktop Community Edition before 2.1.0.1 allows local users to gain privileges by placing a Trojan horse docker-credential-wincred.exe file in %PROGRAMDATA%\DockerDesktop\version-bin\ as a low-privilege user, and then waiting for an admin or service user to authenticate with Docker, restart Docker, or run ‘docker login’ to force the command.

CPENameOperatorVersion
dockerlt2.1.0.1

7.7 High

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

79.2%