Логотип exploitDog
bind:CVE-2023-22818
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-22818

Количество 3

Количество 3

nvd логотип

CVE-2023-22818

около 2 лет назад

Multiple DLL Search Order Hijack vulnerabilities were addressed in the SanDisk Security Installer for Windows that could allow attackers with local access to execute arbitrary code by executing the installer in the same folder as the malicious DLL. This can lead to the execution of arbitrary code with the privileges of the vulnerable application or obtain a certain level of persistence on the compromised host. 

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-9x6g-6cj7-h5vc

около 2 лет назад

Multiple DLL Search Order Hijack vulnerabilities were addressed in the SanDisk Security Installer for Windows that could allow attackers with local access to execute arbitrary code by executing the installer in the same folder as the malicious DLL. This can lead to the execution of arbitrary code with the privileges of the vulnerable application or obtain a certain level of persistence on the compromised host. 

CVSS3: 7.3
EPSS: Низкий
fstec логотип

BDU:2023-07939

около 2 лет назад

Уязвимость установщика программного средства защиты данных на USB-накопителях SanDisk SecureAccess, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-22818

Multiple DLL Search Order Hijack vulnerabilities were addressed in the SanDisk Security Installer for Windows that could allow attackers with local access to execute arbitrary code by executing the installer in the same folder as the malicious DLL. This can lead to the execution of arbitrary code with the privileges of the vulnerable application or obtain a certain level of persistence on the compromised host. 

CVSS3: 7.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-9x6g-6cj7-h5vc

Multiple DLL Search Order Hijack vulnerabilities were addressed in the SanDisk Security Installer for Windows that could allow attackers with local access to execute arbitrary code by executing the installer in the same folder as the malicious DLL. This can lead to the execution of arbitrary code with the privileges of the vulnerable application or obtain a certain level of persistence on the compromised host. 

CVSS3: 7.3
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-07939

Уязвимость установщика программного средства защиты данных на USB-накопителях SanDisk SecureAccess, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.3
0%
Низкий
около 2 лет назад

Уязвимостей на страницу