Логотип exploitDog
bind:CVE-2021-44041
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-44041

Количество 2

Количество 2

nvd логотип

CVE-2021-44041

около 4 лет назад

UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler for uipath-assistant://. This allows an attacker to execute code on a victim's machine or capture NTLM credentials by supplying a networked or WebDAV file path.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-7h9v-7266-h9v7

около 4 лет назад

UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler for uipath-assistant://. This allows an attacker to execute code on a victim's machine or capture NTLM credentials by supplying a networked or WebDAV file path.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-44041

UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler for uipath-assistant://. This allows an attacker to execute code on a victim's machine or capture NTLM credentials by supplying a networked or WebDAV file path.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-7h9v-7266-h9v7

UiPath Assistant 21.4.4 will load and execute attacker controlled data from the file path supplied to the --dev-widget argument of the URI handler for uipath-assistant://. This allows an attacker to execute code on a victim's machine or capture NTLM credentials by supplying a networked or WebDAV file path.

1%
Низкий
около 4 лет назад

Уязвимостей на страницу