7.2
CVSSv2

CVE-2021-42712

Published: 15/02/2022 Updated: 23/02/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Splashtop Streamer up to and including 3.4.8.3 creates a Temporary File in a Directory with Insecure Permissions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

splashtop streamer

Github Repositories

A local privilege escalation exploit for Splashtop Streamer for Windows prior to version 3.5.0.0

SplashPWN A local privilege escalation exploit for Splashtop Streamer for Windows prior to version 3500 Discovered by Ronnie Salomonsen, Mandiant Tracked as CVE-2021-42712 and MNDT-2022-0007