Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qvrh-6f98-2j49

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM i2 Analyst Notebook 9.2.0 and 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system.

IBM i2 Analyst Notebook 9.2.0 and 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system.

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

IBM i2 Analyst Notebook 9.2.0 and 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory corruption. By persuading a victim to open a specially-crafted file, an attacker could exploit this vulnerability to execute arbitrary code on the system.

CVSS3: 8.8
fstec
больше 5 лет назад

Уязвимость инструмента визуального анализа IBM i2 Analyst's Notebook, связанная с записью за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-120