CVE Database
/

CVE-2020-8146

Back to search

CVE-2020-8146

Published: Apr 1, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

In UniFi Video v3.10.1 (for Windows 7/8/10 x64) there is a Local Privileges Escalation to SYSTEM from arbitrary file deletion and DLL hijack vulnerabilities. The issue was fixed by adjusting the .tsExport folder when the controller is running on Windows and adjusting the SafeDllSearchMode in the windows registry when installing UniFi-Video controller. Affected Products: UniFi Video Controller v3.10.2 (for Windows 7/8/10 x64) and prior. Fixed in UniFi Video Controller v3.10.3 and newer.

VendorProductVersions

n/a

UniFi Video Controller (for Windows 7/8/10 x64)

affected
v3.10.2 and prior are affected
affected
Fixed in v3.10.3 and newer

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now