Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-868h-653q-w2q2

Опубликовано: 25 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.

Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.

EPSS

Процентиль: 36%
0.00149
Низкий

8.8 High

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 8.8
nvd
около 2 лет назад

Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.

EPSS

Процентиль: 36%
0.00149
Низкий

8.8 High

CVSS3

Дефекты

CWE-59