Security Advisory

CVE-2021-35508

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-09-01 13:20:16
Last updated 2024-08-04 00:40:46
Assigner mitre
State PUBLISHED

Description

NMSAccess32.exe in TeraRecon AQNetClient 4.4.13 allows attackers to execute a malicious binary with SYSTEM privileges via a low-privileged user account. To exploit this, a low-privileged user must change the service configuration or overwrite the binary service.