Printix 1.3.1106.0 Privilege Escalation
Posted by deepcore on May 11, 2022 – 5:46 am
A “Creation of Temporary Files in Directory with Insecure Permissions” vulnerability in PrintixService.exe in Printix’s “Printix Secure Cloud Print Management” versions 1.3.1106.0 and below allows any logged in user to elevate any executable or file to the SYSTEM context. This is achieved by exploiting race conditions in the creation of the Installer’s temp.ini file.
Post a reply
You must be logged in to post a comment.