Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jw6v-h8fg-79xj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A CWE-426: Untrusted Search Path vulnerability exists in Vijeo Designer Basic (V1.1 HotFix 15 and prior) and Vijeo Designer (V6.9 SP9 and prior), which could cause arbitrary code execution on the system running Vijeo Basic when a malicious DLL library is loaded by the Product.

A CWE-426: Untrusted Search Path vulnerability exists in Vijeo Designer Basic (V1.1 HotFix 15 and prior) and Vijeo Designer (V6.9 SP9 and prior), which could cause arbitrary code execution on the system running Vijeo Basic when a malicious DLL library is loaded by the Product.

EPSS

Процентиль: 33%
0.00135
Низкий

Дефекты

CWE-426

Связанные уязвимости

CVSS3: 7.8
nvd
почти 6 лет назад

A CWE-426: Untrusted Search Path vulnerability exists in Vijeo Designer Basic (V1.1 HotFix 15 and prior) and Vijeo Designer (V6.9 SP9 and prior), which could cause arbitrary code execution on the system running Vijeo Basic when a malicious DLL library is loaded by the Product.

CVSS3: 6.7
fstec
почти 6 лет назад

Уязвимость программного обеспечения Vijeo Designer Basic и Vijeo Designer, связанная с ошибками проверки пути загружаемых динамических библиотек, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 33%
0.00135
Низкий

Дефекты

CWE-426