Description
Incorrect Default Permissions vulnerability in AIRBUS PSS TETRA Connectivity Server on Windows Server OS allows Privilege Abuse. An attacker may execute arbitrary code with SYSTEM privileges if a user is tricked or directed to place a crafted file into the vulnerable directory. This issue affects TETRA connectivity Server: 7.0. Vulnerability fix is available and delivered to impacted customers.
Problem types
CWE-276 Incorrect Default Permissions
Product status
7.0 (semver)
8.0 (semver)
9.0 (semver)
Credits
Erkan Ekici
References
cwe.mitre.org/data/definitions/276.html