Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-54g2-grv7-f82c

Опубликовано: 22 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 6.7

Описание

Western Digital Kitfox for Windows provided by Western Digital Corporation registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrary code with the SYSTEM privilege.

Western Digital Kitfox for Windows provided by Western Digital Corporation registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrary code with the SYSTEM privilege.

EPSS

Процентиль: 3%
0.00016
Низкий

8.4 High

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-428

Связанные уязвимости

CVSS3: 6.7
nvd
6 месяцев назад

Western Digital Kitfox for Windows provided by Western Digital Corporation registers a Windows service with an unquoted file path. A user with the write permission on the root directory of the system drive may execute arbitrary code with the SYSTEM privilege.

EPSS

Процентиль: 3%
0.00016
Низкий

8.4 High

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-428