CVE-2013-2231

high

Description

Unquoted Windows search path vulnerability in the QEMU Guest Agent service for Red Hat Enterprise Linux Desktop 6, HPC Node 6, Server 6, Workstation 6, Desktop Supplementary 6, Server Supplementary 6, Supplementary AUS 6.4, Supplementary EUS 6.4.z, and Workstation Supplementary 6, when installing on Windows, allows local users to gain privileges via a crafted program in an unspecified folder.

References

https://bugzilla.redhat.com/show_bug.cgi?id=980757

http://rhn.redhat.com/errata/RHSA-2013-1101.html

http://rhn.redhat.com/errata/RHSA-2013-1100.html

Details

Source: Mitre, NVD

Published: 2013-10-01

Updated: 2023-02-13

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High