We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-38817



Description

An issue in Inspect Element Ltd Echo.ac v.5.2.1.0 allows a local attacker to gain privileges via a crafted command to the echo_driver.sys component. NOTE: the vendor's position is that the reported ability for user-mode applications to execute code as NT AUTHORITY\SYSTEM was "deactivated by Microsoft itself."

Reserved 2023-07-25 | Published 2023-10-11 | Updated 2024-08-02 | Assigner mitre

References

ioctl.fail/echo-ac-writeup/

cve.org (CVE-2023-38817)

nvd.nist.gov (CVE-2023-38817)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2023-38817

Support options

Helpdesk Chat, Email, Knowledgebase