First published: Tue Apr 13 2021(Updated: )
An incorrect default permissions vulnerability exists in the installation functionality of OpenClinic GA 5.173.3. Overwriting the binary can result in privilege escalation. An attacker can replace a file to exploit this vulnerability.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Openclinic Ga Project Openclinic Ga | =5.173.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27228 is an incorrect default permissions vulnerability in the installation functionality of OpenClinic GA 5.173.3 that can result in privilege escalation.
An attacker can exploit CVE-2020-27228 by replacing a file during the installation process of OpenClinic GA 5.173.3, which can lead to privilege escalation.
CVE-2020-27228 has a severity rating of 7.8 (High).
CVE-2020-27228 affects OpenClinic GA 5.173.3.
Yes, you can find more information on CVE-2020-27228 at: https://talosintelligence.com/vulnerability_reports/TALOS-2020-1204