CVE-2023-38041

7.0HIGH

A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to g

Published: 10/25/2023Updated: 3/7/2025

Description

A logged in user may elevate its permissions by abusing a Time-of-Check to Time-of-Use (TOCTOU) race condition. When a particular process flow is initiated, an attacker can exploit this condition to gain unauthorized elevated privileges on the affected system.

AI AnalysisPowered by AI

Affected Products

ivantisecure_access_client
microsoftwindows
-

References