Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3cm5-j5r2-wvm7

Опубликовано: 22 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affected is an unknown function of the file iuclid6.exe of the component Desktop Installer. The manipulation leads to incorrect default permissions. The attack needs to be approached locally. VDB-251670 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affected is an unknown function of the file iuclid6.exe of the component Desktop Installer. The manipulation leads to incorrect default permissions. The attack needs to be approached locally. VDB-251670 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 2%
0.00014
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 4.4
nvd
около 2 лет назад

A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affected is an unknown function of the file iuclid6.exe of the component Desktop Installer. The manipulation leads to incorrect default permissions. The attack needs to be approached locally. VDB-251670 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 2%
0.00014
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-276