Dräger ICMHelper Privilege Escalation Vulnerability

Vulnerability

A vulnerability exists in the Dräger ICMHelper service, specifically in versions through 1.4.0.1. This vulnerability allows a low privileged local attacker to exploit the service by using a hardcoded cryptographic key, potentially leading to unauthorized execution of operating system commands with elevated privileges.

Impact

Exploitation of this vulnerability could allow a low privileged local attacker to execute operating system commands with the highest privileges, potentially leading to unauthorized access or modification of system resources.

Remediation

The vulnerability has been fixed in ICMHelper version 2.0.1.0.

Added: Aug 5, 2025, 8:34 AM
Updated: Aug 5, 2025, 8:34 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
3.3
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.