Summary
By creating a custom crafted Windows service an attacker can cause a remote execution on the administrator’s workstation.
Severity: Critical
Although there are no signs that this vulnerability is exploited in the wild, Lansweeper recommends installing this update as soon as possible.
Products Affected
Lansweeper 4.x, 5.x, 6.0.0.45 and earlier
Available Updates
Lansweeper 6.0.0.48, which can be downloaded from
our download page
How To Update
Updating Lansweeper is easy, quick and completely free of charge. The latest installer can be found on
our download page. A detailed step-by-step guide on how to update can be found in
this knowledge base article.
Acknowledgments
Bartlomiej Pokrzywinski and Ewerson Guimaraes from Security Competence Center / Poland