Vulnerabilities > CVE-2021-42255 - Exposure of Resource to Wrong Sphere vulnerability in Blueplanet-Works Appguard

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
blueplanet-works
CWE-668

Summary

AppGuard Enterprise before 6.7.100.1 creates a Temporary File in a Directory with Insecure Permissions. Local users can gain SYSTEM privileges because a repair operation relies on the %TEMP% directory of an unprivileged user.

Vulnerable Configurations

Part Description Count
Application
Blueplanet-Works
1

Common Weakness Enumeration (CWE)