Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-9164

Опубликовано: 27 окт. 2025
Источник: nvd
EPSS Низкий

Описание

Docker Desktop Installer.exe is vulnerable to DLL hijacking due to insecure DLL search order. The installer searches for required DLLs in the user's Downloads folder before checking system directories, allowing local privilege escalation through malicious DLL placement.This issue affects Docker Desktop: through 4.48.0.

EPSS

Процентиль: 1%
0.00103
Низкий

Дефекты

CWE-427

Связанные уязвимости

github
10 месяцев назад

Docker Desktop Installer.exe is vulnerable to DLL hijacking due to insecure DLL search order. The installer searches for required DLLs in the user's Downloads folder before checking system directories, allowing local privilege escalation through malicious DLL placement.This issue affects Docker Desktop: through 4.48.0.

CVSS3: 7.8
fstec
10 месяцев назад

Уязвимость установщика платформы для разработки и доставки контейнерных приложений Docker Desktop, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 1%
0.00103
Низкий

Дефекты

CWE-427