Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rmc4-wgqp-pwvm

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple format string vulnerabilities in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via format string specifiers in the filename of a (1) DAA or (2) ISZ file.

Multiple format string vulnerabilities in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via format string specifiers in the filename of a (1) DAA or (2) ISZ file.

EPSS

Процентиль: 75%
0.00904
Низкий

Дефекты

CWE-134

Связанные уязвимости

nvd
почти 17 лет назад

Multiple format string vulnerabilities in UltraISO 9.3.1.2633, and possibly other versions before 9.3.3.2685, allow user-assisted attackers to execute arbitrary code via format string specifiers in the filename of a (1) DAA or (2) ISZ file.

EPSS

Процентиль: 75%
0.00904
Низкий

Дефекты

CWE-134