Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c653-695r-xprr

Опубликовано: 31 янв. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote attacker can exploit this vulnerability to access and modify HKEY_CURRENT_USER subkey (ex: AutoRUN) in Registry where malicious scripts can be executed to take control of the system or to terminate the service.

ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote attacker can exploit this vulnerability to access and modify HKEY_CURRENT_USER subkey (ex: AutoRUN) in Registry where malicious scripts can be executed to take control of the system or to terminate the service.

EPSS

Процентиль: 80%
0.01408
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 9.8
nvd
около 3 лет назад

ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote attacker can exploit this vulnerability to access and modify HKEY_CURRENT_USER subkey (ex: AutoRUN) in Registry where malicious scripts can be executed to take control of the system or to terminate the service.

EPSS

Процентиль: 80%
0.01408
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-20