Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g369-3j35-3453

Опубликовано: 22 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A directory path traversal vulnerability exists when loading a vsmodel file in NI VeriStand that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .vsmodel file. This vulnerability affects VeriStand 2024 Q2 and prior versions.

A directory path traversal vulnerability exists when loading a vsmodel file in NI VeriStand that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .vsmodel file. This vulnerability affects VeriStand 2024 Q2 and prior versions.

EPSS

Процентиль: 84%
0.02263
Низкий

7.8 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.8
nvd
больше 1 года назад

A directory path traversal vulnerability exists when loading a vsmodel file in NI VeriStand that may result in remote code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .vsmodel file. This vulnerability affects VeriStand 2024 Q2 and prior versions.

EPSS

Процентиль: 84%
0.02263
Низкий

7.8 High

CVSS3

Дефекты

CWE-22