Логотип exploitDog
bind:CVE-2024-3459
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-3459

Количество 2

Количество 2

nvd логотип

CVE-2024-3459

больше 1 года назад

KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by default are opened in an external PDF viewer. By using built-in functions of that viewer it is possible to launch a web browser, search through local files and, subsequently, launch any program with user privileges.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-gww7-xg42-6356

больше 1 года назад

KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by default are opened in an external PDF viewer. By using built-in functions of that viewer it is possible to launch a web browser, search through local files and, subsequently, launch any program with user privileges.

CVSS3: 8.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-3459

KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by default are opened in an external PDF viewer. By using built-in functions of that viewer it is possible to launch a web browser, search through local files and, subsequently, launch any program with user privileges.

CVSS3: 8.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-gww7-xg42-6356

KioWare for Windows (versions all through 8.34) allows to escape the environment by downloading PDF files, which then by default are opened in an external PDF viewer. By using built-in functions of that viewer it is possible to launch a web browser, search through local files and, subsequently, launch any program with user privileges.

CVSS3: 8.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу