NoMachine
cpe:2.3:a:nomachine:nomachine:*:*:*:*:*:*:*
- < 9.4.14
A local privilege escalation vulnerability has been identified in NoMachine. This issue arises because the NoMachine Device Server loads a library from an unsecured location, allowing local attackers who can execute low-privileged code to escalate privileges and execute arbitrary code with SYSTEM rights.
Exploitation of this vulnerability allows for local privilege escalation, enabling an attacker to execute code with SYSTEM privileges.
Users can upgrade to NoMachine version 9.4.14 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.