A privilege escalation vulnerability exists within the Qumu Multicast Extension v2 before 2.0.63 for Windows. When a standard user triggers a repair of the software, a pop-up window opens with SYSTEM privileges. Standard users may use this to gain arbitrary code execution as SYSTEM.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Qumu | Enghouse | 2.0.0 (including) | 2.0.63 (excluding) |