Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vqq4-px95-x64f

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Aspera Connect 3.9.9 could allow a remote attacker to execute arbitrary code on the system, caused by improper loading of Dynamic Link Libraries by the import feature. By persuading a victim to open a specially-crafted .DLL file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183190.

IBM Aspera Connect 3.9.9 could allow a remote attacker to execute arbitrary code on the system, caused by improper loading of Dynamic Link Libraries by the import feature. By persuading a victim to open a specially-crafted .DLL file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183190.

EPSS

Процентиль: 76%
0.00965
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

IBM Aspera Connect 3.9.9 could allow a remote attacker to execute arbitrary code on the system, caused by improper loading of Dynamic Link Libraries by the import feature. By persuading a victim to open a specially-crafted .DLL file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183190.

EPSS

Процентиль: 76%
0.00965
Низкий