ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-13549”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-13549
Published
2021-02-19
CVSS:
8.8
ShadowTrackr CVSS:
6.4
Summary:
An exploitable local privilege elevation vulnerability exists in the file system permissions of Sytech XL Reporter v14.0.1 install directory. Depending on the vector chosen, an attacker can overwrite service executables and execute arbitrary code with privileges of user set to run the service or replace other files within the installation folder, which would allow for local privilege escalation.