CVE-2021-35052
Kaspersky Password Manager Improper Privilege Management Privilege Escalation Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to High.
Un componente de Kaspersky Password Manager podrĂa permitir a un atacante elevar el nivel de integridad de un proceso de Medio a Alto
This vulnerability allows local attackers to escalate privileges on affected installations of Kaspersky Password Manager. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
The specific flaw exists within the Kaspersky Password Manager Service. The issue results from execution with unnecessary privileges. An attacker can leverage this vulnerability to escalate privileges from medium integrity and execute code in the context of the current user at high integrity.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-06-18 CVE Reserved
- 2021-11-23 CVE Published
- 2023-06-16 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-269: Improper Privilege Management
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://www.zerodayinitiative.com/advisories/ZDI-21-1335 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.kaspersky.com/general/vulnerability.aspx?el=12430#221121 | 2021-11-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | <= 9.0.1 Search vendor "Kaspersky" for product "Password Manager" and version " <= 9.0.1" | windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_a, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_b, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_c, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_d, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_e, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_f, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_g, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_h, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_i, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_j, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_k, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_l, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_m, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_n, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_o, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_p, windows |
Affected
| ||||||
Kaspersky Search vendor "Kaspersky" | Password Manager Search vendor "Kaspersky" for product "Password Manager" | 9.0.2 Search vendor "Kaspersky" for product "Password Manager" and version "9.0.2" | patch_q, windows |
Affected
|