Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r2h5-jh8m-2q64

Опубликовано: 15 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 5.3

Описание

CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) shared by the attacker into Rapsody.

CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) shared by the attacker into Rapsody.

EPSS

Процентиль: 4%
0.00138
Низкий

8.4 High

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-415

Связанные уязвимости

CVSS3: 5.3
nvd
7 месяцев назад

CWE-415: Double Free vulnerability exists that could cause heap memory corruption when the end user imports a malicious project file (SSD file) shared by the attacker into Rapsody.

CVSS3: 5.3
fstec
7 месяцев назад

Уязвимость программного обеспечения для проектирования и конфигурирования электрических систем Schneider Electric EcoStruxure Power Build Rapsody, связанная с ошибкой повторного освобождения памяти, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 4%
0.00138
Низкий

8.4 High

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-415