Improper Privilege Management vulnerability in Cloudflare WARP on Windows allows File Manipulation. User with a low system privileges  can create a set of symlinks inside the C:\ProgramData\Cloudflare\warp-diag-partials folder. After triggering the 'Reset all settings" option the WARP service will delete the files that the symlink was pointing to. Given the WARP service operates with System privileges this might lead to deleting files owned by the System user. This issue affects WARP: before 2024.12.492.0.
History

Wed, 12 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 22 Jan 2025 17:45:00 +0000

Type Values Removed Values Added
Description Improper Privilege Management vulnerability in Cloudflare WARP on Windows allows File Manipulation. User with a low system privileges  can create a set of symlinks inside the C:\ProgramData\Cloudflare\warp-diag-partials folder. After triggering the 'Reset all settings" option the WARP service will delete the files that the symlink was pointing to. Given the WARP service operates with System privileges this might lead to deleting files owned by the System user. This issue affects WARP: before 2024.12.492.0.
Title File symlink abuse might lead to deleting files belonging to SYSTEM user
Weaknesses CWE-269
References
Metrics cvssV4_0

{'score': 6.1, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:A/VC:L/VI:H/VA:H/SC:H/SI:H/SA:H/S:N/R:U/RE:L/U:Green'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cloudflare

Published: 2025-01-22T17:34:16.705Z

Updated: 2025-02-12T20:41:23.901Z

Reserved: 2025-01-22T15:57:16.758Z

Link: CVE-2025-0651

cve-icon Vulnrichment

Updated: 2025-02-12T20:33:48.302Z

cve-icon NVD

Status : Received

Published: 2025-01-22T18:15:20.363

Modified: 2025-01-22T18:15:20.363

Link: CVE-2025-0651

cve-icon Redhat

No data.