K7 Ultimate Security
cpe:2.3:a:k7computing:k7_ultimate_security:*:*:*:*:*:*:*
- 17.0.2045
A local privilege escalation vulnerability has been identified in K7 Ultimate Security version 17.0.2045. This vulnerability allows an unprivileged user to gain elevated privileges by exploiting insecure access to a named pipe, which enables the user to modify any registry key. The result is a full system compromise with SYSTEM privileges.
Exploitation of this vulnerability allows for local privilege escalation, enabling an unprivileged user to gain SYSTEM-level access.
Users are advised to update to K7 Ultimate Security version 17.0.2057 or higher, which includes the patched K7Sentry.sys version 22.0.0.74 or above.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.