Splashtop Streamer Image File Execution Options Injection Vulnerability [CVE-2024-42050]
– The MSI installer for Splashtop Streamer for Windows versions < 3.7.0.0 uses a temporary folder with weak permissions during installation. A local authenticated user can exploit this to escalate privileges to SYSTEM.
Read More