High
CVSS 7.2
Overview
misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program.
misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which ...
misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program.
This vulnerability is rated 🟠 HIGH.
Recommended actions: