Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8jwj-hrwc-5589

Опубликовано: 08 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 6.7

Описание

FULLBACK Manager Pro provided by GS Yuasa International Ltd. registers two Windows services with unquoted file paths. A user may execute arbitrary code with SYSTEM privilege if he/she has the write permission on the path to the directory where the affected product is installed.

FULLBACK Manager Pro provided by GS Yuasa International Ltd. registers two Windows services with unquoted file paths. A user may execute arbitrary code with SYSTEM privilege if he/she has the write permission on the path to the directory where the affected product is installed.

EPSS

Процентиль: 5%
0.00021
Низкий

8.4 High

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-428

Связанные уязвимости

CVSS3: 6.7
nvd
2 месяца назад

FULLBACK Manager Pro provided by GS Yuasa International Ltd. registers two Windows services with unquoted file paths. A user may execute arbitrary code with SYSTEM privilege if he/she has the write permission on the path to the directory where the affected product is installed.

EPSS

Процентиль: 5%
0.00021
Низкий

8.4 High

CVSS4

6.7 Medium

CVSS3

Дефекты

CWE-428