Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4vgq-c77f-v94g

Опубликовано: 25 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4.8
CVSS3: 3.3

Описание

Incorrect default permissions issue exists in Security Point (Windows) of MaLion prior to Ver.5.3.4. If this vulnerability is exploited, an arbitrary file could be placed in the specific folder by a user who can log in to the system where the product's Windows client is installed. If the file is a specially crafted DLL file, arbitrary code could be executed with SYSTEM privilege.

Incorrect default permissions issue exists in Security Point (Windows) of MaLion prior to Ver.5.3.4. If this vulnerability is exploited, an arbitrary file could be placed in the specific folder by a user who can log in to the system where the product's Windows client is installed. If the file is a specially crafted DLL file, arbitrary code could be executed with SYSTEM privilege.

EPSS

Процентиль: 2%
0.00013
Низкий

4.8 Medium

CVSS4

3.3 Low

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 3.3
nvd
2 месяца назад

Incorrect default permissions issue exists in Security Point (Windows) of MaLion prior to Ver.5.3.4. If this vulnerability is exploited, an arbitrary file could be placed in the specific folder by a user who can log in to the system where the product's Windows client is installed. If the file is a specially crafted DLL file, arbitrary code could be executed with SYSTEM privilege.

EPSS

Процентиль: 2%
0.00013
Низкий

4.8 Medium

CVSS4

3.3 Low

CVSS3

Дефекты

CWE-276