CVE-2023-32163: (0Day) Wacom Drivers for Windows Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Wacom Drivers for Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Tablet Service. By creating a symbolic link, an attacker can abuse the service to create a file. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-32163?
CVE-2023-32163 is a vulnerability that allows local attackers to escalate privileges on affected installations of Wacom Drivers for Windows.
Who is affected by CVE-2023-32163?
Users of Wacom Drivers for Windows version 6.3.45-1 are affected by CVE-2023-32163.
How does CVE-2023-32163 work?
CVE-2023-32163 involves a link following vulnerability that allows local attackers to execute low-privileged code and escalate privileges on the target system.
What is the severity of CVE-2023-32163?
CVE-2023-32163 has a severity rating of 7.8 (High).
How can I mitigate CVE-2023-32163?
To mitigate CVE-2023-32163, it is recommended to upgrade to a fixed version of Wacom Drivers for Windows.