Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cpq5-xxhj-mcq9

Опубликовано: 19 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function window.print() which can then be used to open an unprivileged command prompt.

KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function window.print() which can then be used to open an unprivileged command prompt.

EPSS

Процентиль: 14%
0.00046
Низкий

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
больше 2 лет назад

KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function window.print() which can then be used to open an unprivileged command prompt.

EPSS

Процентиль: 14%
0.00046
Низкий

7.8 High

CVSS3