mirror of
https://github.com/0xMarcio/cve.git
synced 2026-02-12 22:53:11 +00:00
21 lines
938 B
Markdown
21 lines
938 B
Markdown
### [CVE-2021-41526](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-41526)
|
||

|
||

|
||

|
||

|
||

|
||
|
||
### Description
|
||
|
||
A vulnerability has been reported in the windows installer (MSI) built with InstallScript custom action. This vulnerability may allow privilege escalation when invoked ‘repair’ of the MSI which has an InstallScript custom action.
|
||
|
||
### POC
|
||
|
||
#### Reference
|
||
- http://seclists.org/fulldisclosure/2024/Apr/24
|
||
|
||
#### Github
|
||
- https://github.com/RonnieSalomonsen/My-CVEs
|
||
- https://github.com/pawlokk/mindmanager-poc
|
||
|