CVE-2018-17775: High severity seqrite end point security vulnerability
Published Oct 8, 2018
·Updated
Seqrite End Point Security v7.4 has "Everyone: (F)" permission for %PROGRAMFILES%\Seqrite\Seqrite, which allows local users to gain privileges by replacing an executable file with a Trojan horse.
Affected Software
1 affected component
Seqrite End Point Security=7.4
Event History
Oct 8, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-17775?
CVE-2018-17775 has a high severity rating due to the potential for local privilege escalation.
2
How do I fix CVE-2018-17775?
To fix CVE-2018-17775, remove the 'Everyone: (F)' permission for the affected directory and restrict access to authorized users only.
3
What systems are affected by CVE-2018-17775?
CVE-2018-17775 specifically affects Seqrite End Point Security version 7.4.
4
What type of attack does CVE-2018-17775 allow?
CVE-2018-17775 allows local users to perform privilege escalation by replacing executable files with malicious software.
5
Is there a patch available for CVE-2018-17775?
As of now, there is no public patch specifically mentioned for CVE-2018-17775, so manual permission adjustments are recommended.