Soda PDF Desktop
cpe:2.3:a:sodapdf:soda_pdf_desktop:*:*:*:*:*:*:*
A local privilege escalation vulnerability has been identified in Soda PDF Desktop. This issue arises from the product loading an OpenSSL configuration file from an unsecured location, allowing attackers with low-privileged code execution capabilities to escalate privileges and execute arbitrary code with SYSTEM rights.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a local attacker to execute code with SYSTEM privileges.
Due to the nature of this vulnerability, the recommended mitigation strategy is to limit interaction with the affected product.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.