Security Advisory

CVE-2020-27384

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-09 14:54:09
Last updated 2024-08-04 16:11:36
Assigner mitre
State PUBLISHED

Description

The Gw2-64.exe in Guild Wars 2 launcher version 106916 suffers from an elevation of privileges vulnerability which can be used by an "Authenticated User" to modify the existing executable file with a binary of his choice. The vulnerability exist due to the improper permissions, with the F flag (Full Control) for Everyone group, making the entire directory Guild Wars 2 and its files and sub-dirs world-writable.