Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x3x4-rx6q-vgjr

Опубликовано: 29 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc/fstab file). This can allow code execution and, in some versions, enable recovery of TPM Disk Encryption keys and decryption of the Windows system partition.

Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc/fstab file). This can allow code execution and, in some versions, enable recovery of TPM Disk Encryption keys and decryption of the Windows system partition.

EPSS

Процентиль: 18%
0.00058
Низкий

8.1 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.1
nvd
5 месяцев назад

Diebold Nixdorf Vynamic Security Suite through 4.3.0 SR06 contains functionality that allows the removal of critical system files before the filesystem is properly mounted (e.g., leveraging a delete call in /etc/rc.d/init.d/mountfs to remove the /etc/fstab file). This can allow code execution and, in some versions, enable recovery of TPM Disk Encryption keys and decryption of the Windows system partition.

EPSS

Процентиль: 18%
0.00058
Низкий

8.1 High

CVSS3

Дефекты

CWE-269