Skip to main content

Microsoft Malicious Software Removal Tool Elevation of Privilege Vulnerability

Last Update Date: 21 Jul 2015 Release Date: 15 Jul 2015 3371 Views

RISK: Medium Risk

TYPE: Security software and application - Security Software & Appliance

TYPE: Security Software & Appliance

An elevation of privilege vulnerability exists in the Microsoft Malicious Software Removal Tool (MSRT) when it fails to properly handle a race condition involving a DLL-planting scenario. An authenticated attacker who successfully exploited this vulnerability could elevate privileges on a target system. An attacker could then install programs; view, change, or delete data; or create new accounts with full administrative rights.


Impact

  • Elevation of Privilege

System / Technologies affected

  • Versions prior to 5.26

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Upgrade to version 5.26

Vulnerability Identifier


Source


Related Link