Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rrfh-vr5f-gm86

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

An issue was discovered in Ghisler Total Commander 9.51. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the %SYSTEMDRIVE%\totalcmd\TOTALCMD64.EXE binary.

An issue was discovered in Ghisler Total Commander 9.51. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the %SYSTEMDRIVE%\totalcmd\TOTALCMD64.EXE binary.

EPSS

Процентиль: 15%
0.00047
Низкий

7.3 High

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 7.3
nvd
больше 5 лет назад

An issue was discovered in Ghisler Total Commander 9.51. Due to insufficient access restrictions in the default installation directory, an attacker can elevate privileges by replacing the %SYSTEMDRIVE%\totalcmd\TOTALCMD64.EXE binary.

EPSS

Процентиль: 15%
0.00047
Низкий

7.3 High

CVSS3

Дефекты

CWE-276