Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w4rw-g4m2-64c5

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

An Uncontrolled Search Path Element issue was discovered in BLF-Tech LLC VisualView HMI Version 9.9.14.0 and prior. The uncontrolled search path element vulnerability has been identified, which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.

An Uncontrolled Search Path Element issue was discovered in BLF-Tech LLC VisualView HMI Version 9.9.14.0 and prior. The uncontrolled search path element vulnerability has been identified, which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.

EPSS

Процентиль: 49%
0.00257
Низкий

7 High

CVSS3

Дефекты

CWE-427

Связанные уязвимости

CVSS3: 7
nvd
больше 8 лет назад

An Uncontrolled Search Path Element issue was discovered in BLF-Tech LLC VisualView HMI Version 9.9.14.0 and prior. The uncontrolled search path element vulnerability has been identified, which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.

EPSS

Процентиль: 49%
0.00257
Низкий

7 High

CVSS3

Дефекты

CWE-427