« Volver al listado

CVE-2018-12441

Estado: ModificadaAlta (7.8)—

The CorsairService Service in Corsair Utility Engine is installed with insecure default permissions, which allows unprivileged local users to execute arbitrary commands via modification of the CorsairService BINARY_PATH_NAME, leading to complete control of the affected system. The issue exists due to the Windows "Everyone" group being granted SERVICE_ALL_ACCESS permissions to the CorsairService Service.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2018-12441",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.2,
          "accessVector": "LOCAL",
          "vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": false,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 3.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV30": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.0",
          "baseScore": 7.8,
          "attackVector": "LOCAL",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 1.8
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2018-10-11T21:29:00.357",
  "references": [
    {
      "url": "https://github.com/TheRealJoeDoran/CVE/blob/master/CVE-2018-12441/CVE-2018-12441.txt",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://github.com/TheRealJoeDoran/CVE/blob/master/CVE-2018-12441/CVE-2018-12441.txt",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-276"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The CorsairService Service in Corsair Utility Engine is installed with insecure default permissions, which allows unprivileged local users to execute arbitrary commands via modification of the CorsairService BINARY_PATH_NAME, leading to complete control of the affected system. The issue exists due to the Windows \"Everyone\" group being granted SERVICE_ALL_ACCESS permissions to the CorsairService Service."
    },
    {
      "lang": "es",
      "value": "El servicio CorsairService en Corsair Utility Engine está instalado con permisos inseguros por defecto, lo que permite que usuarios locales sin privilegios ejecuten comandos arbitrarios mediante la modificación de BINARY_PATH_NAME de CorsairService, lo que conduce al control total del sistema afectado. El problema existe debido a que el grupo de Windows \"Everyone\" tiene permisos SERVICE_ALL_ACCESS en el servicio CorsairService."
    }
  ],
  "lastModified": "2026-06-17T01:37:47.600",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:corsair:corsair_utility_engine:3.2.87:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2632F6D9-20C1-40C8-A5C7-687457B59091"
            },
            {
              "criteria": "cpe:2.3:a:corsair:corsair_utility_engine:3.3.103:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "8593D42B-0C44-4AF9-84EF-06F59ACC3AB6"
            },
            {
              "criteria": "cpe:2.3:a:corsair:corsair_utility_engine:3.4.95:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "28521C30-D5A5-468C-B17F-4E1E33E14EBC"
            },
            {
              "criteria": "cpe:2.3:a:corsair:corsair_utility_engine:3.6.109:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BBE9CBD0-3EDF-4D79-8107-CDE95CF42249"
            },
            {
              "criteria": "cpe:2.3:a:corsair:corsair_utility_engine:3.7.99:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "3778CBA3-E2CF-4136-A619-1987B69D7BAD"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}