Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hxvv-256m-97hw

Опубликовано: 12 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

In search engine service, there is a possible way to change the default search engine due to an incorrect comparison. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS06219118; Issue ID: ALPS06219118.

In search engine service, there is a possible way to change the default search engine due to an incorrect comparison. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS06219118; Issue ID: ALPS06219118.

EPSS

Процентиль: 4%
0.0002
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-697

Связанные уязвимости

CVSS3: 6.7
nvd
почти 4 года назад

In search engine service, there is a possible way to change the default search engine due to an incorrect comparison. This could lead to local escalation of privilege with System execution privileges needed. User interaction is no needed for exploitation. Patch ID: ALPS06219118; Issue ID: ALPS06219118.

CVSS3: 7.8
fstec
около 2 лет назад

Уязвимость программного обеспечения продуктов Lenovo, связанная с небезопасным управлением привилегиями, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 4%
0.0002
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-697