Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-594m-24qw-wfmp

Опубликовано: 25 апр. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

NSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes uses the Low IL temp directory when executing as SYSTEM, allowing local attackers to gain privileges (if they can cause my_GetTempFileName to return 0, as shown in the references).

NSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes uses the Low IL temp directory when executing as SYSTEM, allowing local attackers to gain privileges (if they can cause my_GetTempFileName to return 0, as shown in the references).

EPSS

Процентиль: 11%
0.0021
Низкий

7.8 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 7.8
ubuntu
4 месяца назад

NSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes uses the Low IL temp directory when executing as SYSTEM, allowing local attackers to gain privileges (if they can cause my_GetTempFileName to return 0, as shown in the references).

CVSS3: 7.8
nvd
4 месяца назад

NSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes uses the Low IL temp directory when executing as SYSTEM, allowing local attackers to gain privileges (if they can cause my_GetTempFileName to return 0, as shown in the references).

CVSS3: 7.8
debian
4 месяца назад

NSIS (Nullsoft Scriptable Install System) 3.06.1 before 3.12 sometimes ...

EPSS

Процентиль: 11%
0.0021
Низкий

7.8 High

CVSS3

Дефекты

CWE-427