First published: Mon Jun 03 2019(Updated: )
Privilege escalation in the "HTC Account Service" and "ViveportDesktopService" in HTC VIVEPORT before 1.0.0.36 allows local attackers to escalate privileges to SYSTEM via reconfiguration of either service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
HTC VIVEPORT | <1.0.0.36 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-12176.
The affected software is HTC VIVEPORT before version 1.0.0.36.
CVE-2019-12176 has a severity level of 7.8 (high).
An attacker can exploit CVE-2019-12176 by escalating privileges to SYSTEM via reconfiguration of either the "HTC Account Service" or "ViveportDesktopService" in HTC VIVEPORT.
Yes, you can find more information about CVE-2019-12176 at the following links: [here](https://community.viveport.com/) and [here](https://huskersec.com/privilege-escalation-via-htc-viveport-desktop-c93471ff87c8).