An issue in Blizzard Battle.net v2.40.0.15267 allows attackers to escalate privileges via placing a crafted shell script or executable into the C:\ProgramData directory.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Jun 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Blizzard
Blizzard battle.net |
|
CPEs | cpe:2.3:a:blizzard:battle.net:2.40.0.15267:*:*:*:*:*:*:* | |
Vendors & Products |
Blizzard
Blizzard battle.net |
Wed, 21 May 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-427 | |
Metrics |
cvssV3_1
|
Wed, 21 May 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue in Blizzard Battle.net v2.40.0.15267 allows attackers to escalate privileges via placing a crafted shell script or executable into the C:\ProgramData directory. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-05-21T00:00:00.000Z
Updated: 2025-05-21T19:46:56.376Z
Reserved: 2025-03-11T00:00:00.000Z
Link: CVE-2025-27997

Updated: 2025-05-21T19:37:30.368Z

Status : Analyzed
Published: 2025-05-21T16:15:30.997
Modified: 2025-06-03T13:52:50.260
Link: CVE-2025-27997

No data.