Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qxc6-qv33-28q7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A remote code execution vulnerability exists in the way that Windows handles objects in memory, aka 'Windows Remote Code Execution Vulnerability'.

A remote code execution vulnerability exists in the way that Windows handles objects in memory, aka 'Windows Remote Code Execution Vulnerability'.

EPSS

Процентиль: 84%
0.02521
Низкий

7.8 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 7.8
nvd
больше 6 лет назад

A remote code execution vulnerability exists in the way that Windows handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code with elevated permissions on a target system. To exploit the vulnerability, an attacker who has a domain user account could create a specially crafted request, causing Windows to execute arbitrary code with elevated permissions. The security update addresses the vulnerability by correcting how Windows handles objects in memory.

CVSS3: 7.8
msrc
больше 6 лет назад

Windows Remote Code Execution Vulnerability

CVSS3: 7.8
fstec
больше 6 лет назад

Уязвимость операционной системы Windows, связанная с ошибками обработки объектов в памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 84%
0.02521
Низкий

7.8 High

CVSS3

Дефекты

CWE-119