VYPR
Critical severity9.8NVD Advisory· Published Jul 26, 2021· Updated Jun 17, 2026

CVE-2020-18172

CVE-2020-18172

Description

A code injection vulnerability in the SeDebugPrivilege component of Trezor Bridge 2.0.27 allows attackers to escalate privileges.

Affected products

3
  • Trezor/Bridgellm-create2 versions
    =2.0.27+ 1 more
    • (no CPE)range: =2.0.27
    • cpe:2.3:a:trezor:bridge:2.0.27:*:*:*:*:windows:*:*
  • Trezor/Trezor Bridgedescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.