Incorrect Access Control in StreamLabs Desktop Application by StreamLabs
CVE-2022-36263

7.3HIGH

Key Information:

Vendor

Logitech

Vendor
CVE Published:
19 August 2022

What is CVE-2022-36263?

The StreamLabs Desktop Application version 1.9.0 suffers from an Incorrect Access Control issue caused by improper handling of the obs64.exe executable. This vulnerability allows attackers to execute arbitrary code by delivering a specially crafted .exe file, potentially compromising system integrity and security. Users are encouraged to update their application to the latest version and consult the referenced resources for further technical details.

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.