Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-6789

Опубликовано: 25 мар. 2021
Источник: nvd
CVSS3: 7.8
CVSS2: 6.9
EPSS Низкий

Описание

Loading a DLL through an Uncontrolled Search Path Element in the Bosch Monitor Wall installer up to and including version 10.00.0164 potentially allows an attacker to execute arbitrary code on a victim's system. A prerequisite is that the victim is tricked into placing a malicious DLL in the same directory where the installer is started from.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:bosch:monitor_wall:*:*:*:*:*:*:*:*
Версия до 10.00.0164 (включая)

EPSS

Процентиль: 19%
0.00061
Низкий

7.8 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-427
CWE-427

Связанные уязвимости

github
около 3 лет назад

Loading a DLL through an Uncontrolled Search Path Element in the Bosch Monitor Wall installer up to and including version 10.00.0164 potentially allows an attacker to execute arbitrary code on a victim's system. A prerequisite is that the victim is tricked into placing a malicious DLL in the same directory where the installer is started from.

EPSS

Процентиль: 19%
0.00061
Низкий

7.8 High

CVSS3

6.9 Medium

CVSS2

Дефекты

CWE-427
CWE-427