Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2frg-67w9-883j

Опубликовано: 29 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.3

Описание

Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. When a local administrator executes a renamed Setup.exe, the MPR.dll may get loaded from an insecure location and can result in a privilege escalation. The issue has been fixed in versions 2023 R2 and later.

Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. When a local administrator executes a renamed Setup.exe, the MPR.dll may get loaded from an insecure location and can result in a privilege escalation. The issue has been fixed in versions 2023 R2 and later.

EPSS

Процентиль: 5%
0.00021
Низкий

7.3 High

CVSS4

Дефекты

CWE-426

Связанные уязвимости

nvd
3 месяца назад

Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. When a local administrator executes a renamed Setup.exe, the MPR.dll may get loaded from an insecure location and can result in a privilege escalation. The issue has been fixed in versions 2023 R2 and later.

EPSS

Процентиль: 5%
0.00021
Низкий

7.3 High

CVSS4

Дефекты

CWE-426