Sky Co.,LTD. SKYSEA Client View
cpe:2.3:a:skygroup:skysea_client_view:*:*:*:*:*:*:*
- <= 21.200.07j
A vulnerability exists in SKYSEA Client View versions through 21.200.07j and SKYMEC IT Manager versions through 2024.005.10a, both provided by Sky Co., Ltd. These applications improperly configure file access permissions in the installation folder, allowing non-administrative users to manipulate or place arbitrary files. This could lead to the execution of arbitrary code with administrative privileges.
Exploitation of this vulnerability could allow non-administrative users to execute arbitrary code with administrative privileges on the affected system.
Users of SKYSEA Client View can update to version 21.210.01f or later, or apply the available patch through the Master Server. SKYMEC IT Manager users should apply the provided patch via the Master Server. For both applications, if a departmental installer was created before this update, it should be re-created.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.