Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-9268

Опубликовано: 01 окт. 2018
Источник: nvd
CVSS3: 7.8
CVSS2: 9.3
EPSS Низкий

Описание

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nullsoft:nullsoft_scriptable_install_system:*:*:*:*:*:*:*:*
Версия до 2.49 (исключая)
Конфигурация 2
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

EPSS

Процентиль: 68%
0.00569
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 7 лет назад

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

CVSS3: 7.8
debian
больше 7 лет назад

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe impli ...

CVSS3: 7.8
github
больше 3 лет назад

Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.

EPSS

Процентиль: 68%
0.00569
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-20