TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to escalate privileges. NOTE: This implies that Snagits use of OLE is a security vulnerability unto itself and it is not. See reference document for more details
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Snagit | Techsmith | 19.1.0.2653 (including) | 19.1.0.2653 (including) |