Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-359g-8g36-v6qg

Опубликовано: 28 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

A DLL hijacking vulnerability in the MA Smart Installer for Windows prior to 5.7.7, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL into the folder from where the Smart installer is being executed.

A DLL hijacking vulnerability in the MA Smart Installer for Windows prior to 5.7.7, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL into the folder from where the Smart installer is being executed.

EPSS

Процентиль: 27%
0.00346
Низкий

7.3 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 8.2
nvd
около 4 лет назад

A DLL hijacking vulnerability in the MA Smart Installer for Windows prior to 5.7.7, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL into the folder from where the Smart installer is being executed.

CVSS3: 8.2
fstec
около 4 лет назад

Уязвимость установщика McAfee Smart Installer антивирусного программного средства McAfee Agent операционных систем Windows, позволяющая нарушителю выполнить произвольный код или повысить свои привилегии

EPSS

Процентиль: 27%
0.00346
Низкий

7.3 High

CVSS3

Дефекты

CWE-427