Логотип exploitDog
bind:CVE-2024-29188
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-29188

Количество 3

Количество 3

nvd логотип

CVE-2024-29188

почти 2 года назад

WiX toolset lets developers create installers for Windows Installer, the Windows installation engine. The custom action behind WiX's `RemoveFolderEx` functionality could allow a standard user to delete protected directories. `RemoveFolderEx` deletes an entire directory tree during installation or uninstallation. It does so by recursing every subdirectory starting at a specified directory and adding each subdirectory to the list of directories Windows Installer should delete. If the setup author instructed `RemoveFolderEx` to delete a per-user folder from a per-machine installer, an attacker could create a directory junction in that per-user folder pointing to a per-machine, protected directory. Windows Installer, when executing the per-machine installer after approval by an administrator, would delete the target of the directory junction. This vulnerability is fixed in 3.14.1 and 4.0.5.

CVSS3: 7.9
EPSS: Низкий
github логотип

GHSA-jx4p-m4wm-vvjg

почти 2 года назад

Malicious directory junction can cause WiX RemoveFoldersEx to possibly delete elevated files

CVSS3: 7.9
EPSS: Низкий
fstec логотип

BDU:2024-04607

почти 2 года назад

Уязвимость функции RemoveFolderEx набора инструментов создания установочных пакетов WiX Toolset операционной системы Windows, позволяющая нарушителю удалить произвольные файлы

CVSS3: 7.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-29188

WiX toolset lets developers create installers for Windows Installer, the Windows installation engine. The custom action behind WiX's `RemoveFolderEx` functionality could allow a standard user to delete protected directories. `RemoveFolderEx` deletes an entire directory tree during installation or uninstallation. It does so by recursing every subdirectory starting at a specified directory and adding each subdirectory to the list of directories Windows Installer should delete. If the setup author instructed `RemoveFolderEx` to delete a per-user folder from a per-machine installer, an attacker could create a directory junction in that per-user folder pointing to a per-machine, protected directory. Windows Installer, when executing the per-machine installer after approval by an administrator, would delete the target of the directory junction. This vulnerability is fixed in 3.14.1 and 4.0.5.

CVSS3: 7.9
0%
Низкий
почти 2 года назад
github логотип
GHSA-jx4p-m4wm-vvjg

Malicious directory junction can cause WiX RemoveFoldersEx to possibly delete elevated files

CVSS3: 7.9
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-04607

Уязвимость функции RemoveFolderEx набора инструментов создания установочных пакетов WiX Toolset операционной системы Windows, позволяющая нарушителю удалить произвольные файлы

CVSS3: 7.9
0%
Низкий
почти 2 года назад

Уязвимостей на страницу