Fiche vulnérabilité
CVE-2020-8948 : faille élevée sierrawireless mobile broadband driver… (CVSS 7.8)
Description
The Sierra Wireless Windows Mobile Broadband Driver Packages (MBDP) before build 5043 allows an unprivileged user to overwrite arbitrary files in arbitrary folders using hard links. An unprivileged user could leverage this vulnerability to execute arbitrary code with system privileges.
En bref
- Sévérité
- Élevée (CVSS 7.8)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 15 avr. 2020
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- sierrawireless mobile broadband driver package