Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mrch-6g3f-vm3c

Опубликовано: 24 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.6

Описание

DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

EPSS

Процентиль: 9%
0.00032
Низкий

8.6 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 8.6
nvd
около 1 года назад

DLL hijacking vulnerabilities, caused by an uncontrolled search path in Configuration Wizard 2 installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.

EPSS

Процентиль: 9%
0.00032
Низкий

8.6 High

CVSS3

Дефекты

CWE-427