VYPR

Usbview

by Usbview Project

CVEs (1)

  • CVE-2022-23220HigJan 21, 2022
    risk 0.00cvss 7.8epss 0.01

    USBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary code as root because certain Polkit settings (e.g., allow_any=yes) for pkexec disable the authentication requirement. Code execution can, for example, use the --gtk-module option.…