Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q8qc-66ph-9f73

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure Permissions. The impact is: arbitrary code execution with escalation of privilege. The component is: Executable installer, portable executable (ALL executables available). The attack vector is: CWE-29, CWE-377, CWE-379.

Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure Permissions. The impact is: arbitrary code execution with escalation of privilege. The component is: Executable installer, portable executable (ALL executables available). The attack vector is: CWE-29, CWE-377, CWE-379.

EPSS

Процентиль: 71%
0.00677
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 9.8
nvd
больше 6 лет назад

Akeo Consulting Rufus 3.0 and earlier is affected by: Insecure Permissions. The impact is: arbitrary code execution with escalation of privilege. The component is: Executable installer, portable executable (ALL executables available). The attack vector is: CWE-29, CWE-377, CWE-379.

EPSS

Процентиль: 71%
0.00677
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-732