Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j63h-wp7g-gv2g

Опубликовано: 19 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function showDirectoryPicker() which can then be used to open an unprivileged command prompt.

KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function showDirectoryPicker() which can then be used to open an unprivileged command prompt.

EPSS

Процентиль: 20%
0.00064
Низкий

7.8 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.8
nvd
больше 2 лет назад

KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on Windows 10. This issue can allow attackers to open a file dialog box via the function showDirectoryPicker() which can then be used to open an unprivileged command prompt.

EPSS

Процентиль: 20%
0.00064
Низкий

7.8 High

CVSS3

Дефекты

CWE-78