Description
A vulnerability in the Windows installer XML (WiX) toolset of TechSmith Snagit 19.1.1.2860 allows attackers to escalate privileges. NOTE: Exploit of the Snagit installer would require the end user to ignore other safety mechanisms provided by the Host OS. See reference document for more details.
References (3)
Core 3
Core References
Exploit, Third Party Advisory
https://github.com/GitHubAssessments/CVE_Assessment_04_2019/blob/master/Snagit_Report.pdf
Scores
CVSS v3
7.8
EPSS
0.0049
EPSS Percentile
37.9%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-269
Status
published
Products (1)
techsmith/snagit
19.1.1.2860
Published
Jul 26, 2021
Tracked Since
Feb 18, 2026