Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m66r-9qpp-v37j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

As a result of an unquoted service path vulnerability present in the Kiwi CatTools Installation Wizard, a local attacker could gain escalated privileges by inserting an executable into the path of the affected service or uninstall entry.

As a result of an unquoted service path vulnerability present in the Kiwi CatTools Installation Wizard, a local attacker could gain escalated privileges by inserting an executable into the path of the affected service or uninstall entry.

EPSS

Процентиль: 61%
0.00405
Низкий

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 6.7
nvd
больше 4 лет назад

As a result of an unquoted service path vulnerability present in the Kiwi CatTools Installation Wizard, a local attacker could gain escalated privileges by inserting an executable into the path of the affected service or uninstall entry.

EPSS

Процентиль: 61%
0.00405
Низкий

Дефекты

CWE-22