CVE-2021-20713

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
24/05/2021
Last modified:
03/06/2021

Description

Privilege escalation vulnerability in QND Advance/Premium/Standard Ver.11.0.4i and earlier allows an attacker who can log in to the PC where the product's Windows client is installed to gain administrative privileges via unspecified vectors. As a result, sensitive information may be altered/obtained or unintended operations may be performed.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qualitysoft:qnd:*:*:*:*:advance:*:*:* 11.0.4i (including)
cpe:2.3:a:qualitysoft:qnd:*:*:*:*:premium:*:*:* 11.0.4i (including)
cpe:2.3:a:qualitysoft:qnd:*:*:*:*:standard:*:*:* 11.0.4i (including)