Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mr59-8hjw-5m9c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16909.

An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows Error Reporting Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16909.

EPSS

Процентиль: 74%
0.00838
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.8
nvd
почти 5 лет назад

<p>An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. The vulnerability could allow elevation of privilege if an attacker can successfully exploit it.</p> <p>An attacker who successfully exploited the vulnerability could gain greater access to sensitive information and system functionality. To exploit the vulnerability, an attacker could run a specially crafted application.</p> <p>The security update addresses the vulnerability by correcting the way that WER handles and executes files.</p>

CVSS3: 6.8
msrc
почти 5 лет назад

Windows Error Reporting Elevation of Privilege Vulnerability

CVSS3: 6.8
fstec
почти 5 лет назад

Уязвимость службы регистрации ошибок Windows Error Reporting операционной системы Windows, позволяющая нарушителю повысить свои привилегии и получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 74%
0.00838
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-269