Описание
A Code Execution Vulnerability exists in UMPlayer 0.98 in wintab32.dll due to insufficient path restrictions when loading external libraries. which could let a malicious user execute arbitrary code.
Ссылки
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:umplayer_project:umplayer:0.98:*:*:*:*:*:*:*
EPSS
Процентиль: 43%
0.00211
Низкий
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-426
Связанные уязвимости
github
почти 4 года назад
A Code Execution Vulnerability exists in UMPlayer 0.98 in wintab32.dll due to insufficient path restrictions when loading external libraries. which could let a malicious user execute arbitrary code.
EPSS
Процентиль: 43%
0.00211
Низкий
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-426