First published: Wed Dec 27 2017(Updated: )
Ubiquiti UniFi Video before 3.8.0 for Windows uses weak permissions for the installation directory, which allows local users to gain SYSTEM privileges via a Trojan horse taskkill.exe file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ui Unifi Video | <3.8.0 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for Ubiquiti UniFi Video is CVE-2016-6914.
The title of the vulnerability for Ubiquiti UniFi Video is 'Ubiquiti UniFi Video before 3.8.0 for Windows uses weak permissions for the installation directory.'
The severity of CVE-2016-6914 is high with a severity value of 7.8.
The vulnerability in Ubiquiti UniFi Video allows local users to gain SYSTEM privileges via a Trojan horse taskkill.exe file.
To fix the vulnerability in Ubiquiti UniFi Video, update to version 3.8.0 or later.