Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cfp4-qwcr-m7x3

Опубликовано: 09 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Substance3D - Stager versions 3.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Substance3D - Stager versions 3.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

EPSS

Процентиль: 7%
0.00026
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.5
nvd
7 месяцев назад

Substance3D - Stager versions 3.1.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 5.5
fstec
7 месяцев назад

Уязвимость программного обеспечения для 3D-дизайна Adobe Substance 3D Stager, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 7%
0.00026
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-125