EA Games’ Origin client contained privilege escalation vuln that anyone with user-grade access could exploit

A British infosec outfit spotted a privilege escalation vulnerability in EA Games’ Origin client after discovering the software was hunting for an absent DLL file when users opened it. Nettitude found the priv-esc after researcher Tom Wilson fired up Origin and ran Process Monitor (Procmon) over it to see what Origin was calling when it ran.

Read full article on The Register

 


Date:

Categorie(s):

Tag(s):