Razer Synapse 3 Local Privilege Escalation Vulnerability
Vulnerability
A local privilege escalation vulnerability has been identified in Razer Synapse 3. This issue arises within the Razer Chroma SDK installer, where an attacker can create a symbolic link to manipulate the installer into deleting arbitrary files. Exploiting this vulnerability allows the attacker to escalate privileges and execute arbitrary code with SYSTEM rights. To take advantage of this flaw, an attacker must first have the ability to run low-privileged code on the target system.
Impact
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to execute code with elevated rights, potentially causing greater harm to the system or user.
Remediation
Users can update to Razer Synapse 3 version 3.10.730.71519 to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
