CVE-2022-36670 Information

Description

PCProtect Endpoint prior to v5.17.470 for Microsoft Windows lacks tamper protection allowing authenticated attackers with Administrator privileges to modify processes within the application and escalate privileges to SYSTEM via a crafted executable.

Reference

https://mrvar0x.com/2022/07/21/pcprotect-endpoint-tampering-exploit/

Share on: