Privilege Escalation in IOBit Advanced System Care and Action Download Center
CVE-2022-24138
7.8HIGH
What is CVE-2022-24138?
A vulnerability exists in IOBit Advanced System Care version 15 and Action Download Center, where components of the IOBit suite are downloaded into the ProgramData folder, which has permissive 'rwx' settings for unprivileged users. This misconfiguration allows low privilege users to exploit the SetOpLock function to intercept process creation. By replacing legitimate components with malicious executables, attackers can escalate their privileges and execute arbitrary code with high integrity, compromising the security of the system.