Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cj9p-j3hg-5xmv

Опубликовано: 24 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the 

ToolStick

installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the 

ToolStick

installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

EPSS

Процентиль: 9%
0.00032
Низкий

8.6 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 8.6
nvd
около 1 года назад

DLL hijacking vulnerabilities, caused by an uncontrolled search path in the  ToolStick installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

EPSS

Процентиль: 9%
0.00032
Низкий

8.6 High

CVSS3

Дефекты

CWE-427