Vulnerabilities > CVE-2022-34100 - Unspecified vulnerability in Crestron Airmedia 4.3.1.39
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A vulnerability was discovered in the Crestron AirMedia Windows Application, version 4.3.1.39, in which a low-privileged user can gain a SYSTEM level command prompt by pre-staging a file structure prior to the installation of a trusted service executable and change permissions on that file structure during a repair operation.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |