Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fgmp-r99f-p6j4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker could exploit this to to plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.

Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker could exploit this to to plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.

EPSS

Процентиль: 23%
0.00076
Низкий

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 6.5
nvd
почти 5 лет назад

Adobe Genuine Service version 6.6 (and earlier) is affected by an Uncontrolled Search Path element vulnerability. An authenticated attacker with admin privileges could plant custom binaries and execute them with System permissions. Exploitation of this issue requires user interaction.

CVSS3: 6.5
fstec
больше 5 лет назад

Уязвимость службы проверки приложений Adobe Genuine Service, связанная с небезопасной процедурой поиска путей к библиотекам DLL. позволяющая нарушителю загрузить вредоносный исполняемый файл и повысить свои привилегии

EPSS

Процентиль: 23%
0.00076
Низкий

Дефекты

CWE-427