Severity
7.8HIGH
EPSS
0.3%
top 50.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 13
Latest updateMay 24

Description

PCManager 9.1.3.1 has an improper authentication vulnerability. The certain driver interface of the software does not perform a validation of user-mode data properly, successful exploit could result in malicious code execution.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

NVDhuawei/pcmanager9.1.3.1
CVEListV5huawei/pc_managerPCManager 9.1.3.1

🔴Vulnerability Details

3
GHSA
GHSA-jf7j-3ggw-6mcv: PCManager 92022-05-24
GHSA
Persistent XSS vulnerability in filename of attached file in PrivateBin2020-01-14
CVEList
CVE-2019-5223: PCManager 92019-08-13
CVE-2019-5223 (HIGH CVSS 7.8) | PCManager 9.1.3.1 has an improper a | cvebase.io