NAVER MYBOX Explorer for Windows before 3.0.8.133 allows a local attacker to escalate privileges to NT AUTHORITYSYSTEM by invoking arbitrary DLLs due to improper privilege checks.
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mybox | Navercorp | * | 3.0.8.133 (excluding) |