CVE-2025-0542 Details
Description
Local privilege escalation due to incorrect assignment of privileges of temporary files in the update mechanism of G DATA Management Server. This vulnerability allows a local, unprivileged attacker to escalate privileges on affected installations by placing a crafted ZIP archive in a globally writable directory, which gets unpacked in the context of SYSTEM and results in arbitrary file write.
A local privilege escalation vulnerability has been identified in G DATA Management Server. The issue arises from an incorrect assignment of privileges to temporary files during the update process. This vulnerability allows an unprivileged local attacker to escalate privileges by placing a specially crafted ZIP archive in a globally writable directory. The archive is then unpacked with SYSTEM privileges, leading to arbitrary file write capabilities.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Jan 25, 2025CISA-ADP
Assessed Jan 27, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/nullby73/security-advisories/tree/main/CVE-2025-0542 | cirosec GmbH |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | cirosec GmbH |
| CWE-276 | Incorrect Default Permissions | cirosec GmbH |
Affected Products
| Product | Versions |
|---|---|
| G DATA Management Server | All versions |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | cirosec GmbH |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jan 25, 2025 | New CVE Received | cirosec GmbH |
Volerion