Fsas Technologies ServerView Agents for Windows Insecure DLL Loading Vulnerability Allowing Arbitrary Code Execution
Vulnerability
A vulnerability exists in the installer of ServerView Agents for Windows, provided by Fsas Technologies Inc., prior to version 11.50.06. The issue stems from an uncontrolled search path element, allowing the installer to insecurely load Dynamic Link Libraries (DLLs). This flaw could be exploited to execute arbitrary code with administrator privileges when the installer is run.
Impact
Exploitation of this vulnerability could lead to arbitrary code execution with administrative rights.
Remediation
Users are advised to download and install the latest version of ServerView Agents for Windows, specifically version 11.60.04 or later.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
