CVE-2017-11319
HIGHPerspective ICM Investigation & Case 5.1.1.16 - Authenticated Privilege Escalation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-11319. PoCs published by Konstantinos Alexiou.
AI-analyzed exploit summary This exploit demonstrates a privilege escalation vulnerability in Perspective ICM Investigation & Case Management software by tampering with user permission values in the Perspective.data.dll. It involves debugging the application with dnSpy to modify access levels and enable restricted features like the Administration menu.
Description
Perspective ICM Investigation & Case 5.1.1.16 allows remote authenticated users to modify access level permissions and consequently gain privileges by leveraging insufficient validation methods and missing cross server side checking mechanisms.
Exploits (1)
This exploit demonstrates a privilege escalation vulnerability in Perspective ICM Investigation & Case Management software by tampering with user permission values in the Perspective.data.dll. It involves debugging the application with dnSpy to modify access levels and enable restricted features like the Administration menu.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H