Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49v5-h84x-33xp

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Unquoted Windows search path vulnerability in Schneider Electric Floating License Manager 1.0.0 through 1.4.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.

Unquoted Windows search path vulnerability in Schneider Electric Floating License Manager 1.0.0 through 1.4.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.

EPSS

Процентиль: 38%
0.00446
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-428

Связанные уязвимости

CVSS3: 5.9
nvd
больше 12 лет назад

Unquoted Windows search path vulnerability in Schneider Electric Floating License Manager 1.0.0 through 1.4.0 allows local users to gain privileges via a Trojan horse application with a name composed of an initial substring of a path that contains a space character.

EPSS

Процентиль: 38%
0.00446
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-428