Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcj3-538v-c35r

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

EPSS

Процентиль: 68%
0.00569
Низкий

7.8 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 7 лет назад

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

CVSS3: 7.8
nvd
больше 7 лет назад

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

CVSS3: 7.8
debian
больше 7 лет назад

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe impli ...

EPSS

Процентиль: 68%
0.00569
Низкий

7.8 High

CVSS3

Дефекты

CWE-20