Описание
As a result of an unquoted service path vulnerability present in the Kiwi CatTools Installation Wizard, a local attacker could gain escalated privileges by inserting an executable into the path of the affected service or uninstall entry.
Уязвимые конфигурации
Конфигурация 1Версия до 3.11.9 (исключая)
cpe:2.3:a:solarwinds:kiwi_cattools:*:*:*:*:*:*:*:*
EPSS
Процентиль: 61%
0.00405
Низкий
6.7 Medium
CVSS3
7.2 High
CVSS2
Дефекты
CWE-22
CWE-22
Связанные уязвимости
github
больше 3 лет назад
As a result of an unquoted service path vulnerability present in the Kiwi CatTools Installation Wizard, a local attacker could gain escalated privileges by inserting an executable into the path of the affected service or uninstall entry.
EPSS
Процентиль: 61%
0.00405
Низкий
6.7 Medium
CVSS3
7.2 High
CVSS2
Дефекты
CWE-22
CWE-22