Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-0770

Опубликовано: 21 янв. 2024
Источник: nvd
CVSS3: 4.4
CVSS3: 7.1
CVSS2: 3.2
EPSS Низкий

Описание

A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affected is an unknown function of the file iuclid6.exe of the component Desktop Installer. The manipulation leads to incorrect default permissions. The attack needs to be approached locally. VDB-251670 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:echa.europa:iuclid:7.10.3:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

EPSS

Процентиль: 2%
0.00014
Низкий

4.4 Medium

CVSS3

7.1 High

CVSS3

3.2 Low

CVSS2

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 4.4
github
около 2 лет назад

A vulnerability, which was classified as critical, was found in European Chemicals Agency IUCLID 7.10.3 on Windows. Affected is an unknown function of the file iuclid6.exe of the component Desktop Installer. The manipulation leads to incorrect default permissions. The attack needs to be approached locally. VDB-251670 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

EPSS

Процентиль: 2%
0.00014
Низкий

4.4 Medium

CVSS3

7.1 High

CVSS3

3.2 Low

CVSS2

Дефекты

CWE-276