Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-6803

Опубликовано: 13 нояб. 2017
Источник: nvd
CVSS3: 7.8
CVSS2: 9.3
EPSS Низкий

Описание

An installer defect known as an "unquoted Windows search path vulnerability" affected the Apache OpenOffice before 4.1.3 installers for Windows. The PC must have previously been infected by a Trojan Horse application (or user) running with administrative privilege. Any installer with the unquoted search path vulnerability becomes a delayed trigger for the exploit.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:apache:openoffice:*:*:*:*:*:*:*:*
Версия до 4.1.2 (включая)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 31%
0.00118
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-426

Связанные уязвимости

CVSS3: 7.8
github
больше 3 лет назад

An installer defect known as an "unquoted Windows search path vulnerability" affected the Apache OpenOffice before 4.1.3 installers for Windows. The PC must have previously been infected by a Trojan Horse application (or user) running with administrative privilege. Any installer with the unquoted search path vulnerability becomes a delayed trigger for the exploit.

EPSS

Процентиль: 31%
0.00118
Низкий

7.8 High

CVSS3

9.3 Critical

CVSS2

Дефекты

CWE-426