EaseUS Todo Backup may allow local privilege escalation
CVE-2023-32221

8.8HIGH

Key Information:

Vendor

Easeus

Vendor
CVE Published:
12 June 2023

What is CVE-2023-32221?

A vulnerability in EaseUS Todo Backup version 20220111.390 allows local attackers to exploit an installation oversight, potentially leading to unauthorized privilege escalation. This flaw highlights the importance of thorough security practices during software installation to prevent attackers from gaining elevated access to system resources.

Affected Version(s)

Todo Backup version 20220111.390

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Sagiv Michael
.