Логотип exploitDog
bind:CVE-2024-20754
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-20754

Количество 3

Количество 3

nvd логотип

CVE-2024-20754

почти 2 года назад

Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses a search path to locate critical resources such as programs, then an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-q677-9v9j-jjwq

почти 2 года назад

Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses a search path to locate critical resources such as programs, then an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-02138

почти 2 года назад

Уязвимость графического редактора Adobe Lightroom, связанная с использованием ненадёжного пути поиска, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-20754

Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses a search path to locate critical resources such as programs, then an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-q677-9v9j-jjwq

Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses a search path to locate critical resources such as programs, then an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-02138

Уязвимость графического редактора Adobe Lightroom, связанная с использованием ненадёжного пути поиска, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.5
0%
Низкий
почти 2 года назад

Уязвимостей на страницу