Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-9176

Опубликовано: 20 авг. 2025
Источник: nvd
CVSS3: 5.3
CVSS3: 7.8
CVSS2: 4.3
EPSS Низкий

Описание

A security flaw has been discovered in neurobin shc up to 4.0.3. Impacted is the function make of the file src/shc.c of the component Environment Variable Handler. The manipulation results in os command injection. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:neurobin:shc:*:*:*:*:*:*:*:*
Версия до 4.0.3 (включая)

EPSS

Процентиль: 15%
0.00048
Низкий

5.3 Medium

CVSS3

7.8 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 5.3
github
6 месяцев назад

A security flaw has been discovered in neurobin shc up to 4.0.3. Impacted is the function make of the file src/shc.c of the component Environment Variable Handler. The manipulation results in os command injection. The attack is only possible with local access. The exploit has been released to the public and may be exploited.

EPSS

Процентиль: 15%
0.00048
Низкий

5.3 Medium

CVSS3

7.8 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-77
CWE-78