Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gw5q-m62q-j9vf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The usage of Tomcat in Confluence on the Microsoft Windows operating system before version 7.0.5, and from version 7.1.0 before version 7.1.1 allows local system attackers who have permission to write a DLL file in a directory in the global path environmental variable variable to inject code & escalate their privileges via a DLL hijacking vulnerability.

The usage of Tomcat in Confluence on the Microsoft Windows operating system before version 7.0.5, and from version 7.1.0 before version 7.1.1 allows local system attackers who have permission to write a DLL file in a directory in the global path environmental variable variable to inject code & escalate their privileges via a DLL hijacking vulnerability.

EPSS

Процентиль: 37%
0.00155
Низкий

Дефекты

CWE-426
CWE-427

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

The usage of Tomcat in Confluence on the Microsoft Windows operating system before version 7.0.5, and from version 7.1.0 before version 7.1.1 allows local system attackers who have permission to write a DLL file in a directory in the global path environmental variable variable to inject code & escalate their privileges via a DLL hijacking vulnerability.

EPSS

Процентиль: 37%
0.00155
Низкий

Дефекты

CWE-426
CWE-427