CVE-2020-36154: Pearson Vue Testing System
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
The Application Wrapper in Pearson VUE VTS Installer 2.3.1911 has Full Control permissions for Everyone in the "%SYSTEMDRIVE%\Pearson VUE" directory, which allows local users to obtain administrative privileges via a Trojan horse application.
Affected products
- Pearson Vue Testing System: version 2.3.1911 only
Published 2021-01-04. Last modified 2026-06-17.