Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vwqm-2h3p-mfwj

Опубликовано: 21 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Passage Drive versions v1.4.0 to v1.5.1.0 and Passage Drive for Box version v1.0.0 contain an insufficient data verification vulnerability for interprocess communication. By running a malicious program, an arbitrary OS command may be executed with LocalSystem privilege of the Windows system where the product is running.

Passage Drive versions v1.4.0 to v1.5.1.0 and Passage Drive for Box version v1.0.0 contain an insufficient data verification vulnerability for interprocess communication. By running a malicious program, an arbitrary OS command may be executed with LocalSystem privilege of the Windows system where the product is running.

EPSS

Процентиль: 18%
0.00057
Низкий

7.8 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
nvd
больше 3 лет назад

Passage Drive versions v1.4.0 to v1.5.1.0 and Passage Drive for Box version v1.0.0 contain an insufficient data verification vulnerability for interprocess communication. By running a malicious program, an arbitrary OS command may be executed with LocalSystem privilege of the Windows system where the product is running.

EPSS

Процентиль: 18%
0.00057
Низкий

7.8 High

CVSS3

Дефекты

CWE-20