CVE-2021-43768 – Malwarebytes for Teams Local Privilege Escalation
SUMMARY:
In Malwarebytes for Teams 4.1.2.73 with component package version 1.0.990 and before, a low privileged user can execute local privilege escalation via COM interface.
AFFECTED VERSIONS
- Component package version <= 1.0.990 of Malwarebytes for Teams 4.1.2.73
PATCHED VERSIONS
- Component package version >= 1.0.1003 of Malwarebytes for Teams 4.1.2.73
MITIGATION ADVICE
We recommend upgrading the affected endpoints to the latest version.
DETAILS
| CWE | CVS 3.x | Vector | Impact |
| CWE-269: Improper Privilege Management | 8.4 High | Local | Local Privilege Escalation |