Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-30759

Опубликовано: 19 июн. 2023
Источник: nvd
CVSS3: 7.8
CVSS3: 8.4
EPSS Низкий

Описание

The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modification and may spawn an unexpected process with the administrative privilege. If a non-administrative user modifies the driver installation package and runs it on the target PC, an arbitrary program may be executed with the administrative privilege.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ricoh:printer_driver_packager_nx:*:*:*:*:*:*:*:*
Версия от 1.0.02 (включая) до 1.1.26 (исключая)

EPSS

Процентиль: 15%
0.00049
Низкий

7.8 High

CVSS3

8.4 High

CVSS3

Дефекты

CWE-345
CWE-352

Связанные уязвимости

CVSS3: 7.8
github
больше 2 лет назад

The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modification and may spawn an unexpected process with the administrative privilege. If a non-administrative user modifies the driver installation package and runs it on the target PC, an arbitrary program may be executed with the administrative privilege.

EPSS

Процентиль: 15%
0.00049
Низкий

7.8 High

CVSS3

8.4 High

CVSS3

Дефекты

CWE-345
CWE-352