Логотип exploitDog
bind:CVE-2025-42992
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-42992

Количество 3

Количество 3

nvd логотип

CVE-2025-42992

7 месяцев назад

SAPCAR allows an attacker logged in with high privileges to create a malicious SAR archive in SAPCAR. This could enable the attacker to exploit critical files and directory permissions without breaking signature validation, resulting in potential privilege escalation. This has high impact on integrity, but low impact on confidentiality and availability of the system.

CVSS3: 6.9
EPSS: Низкий
github логотип

GHSA-64gg-ww65-9f92

7 месяцев назад

SAPCAR allows an attacker logged in with high privileges to create a malicious SAR archive in SAPCAR. This could enable the attacker to exploit critical files and directory permissions without breaking signature validation, resulting in potential privilege escalation. This has high impact on integrity, but low impact on confidentiality and availability of the system.

CVSS3: 6.9
EPSS: Низкий
fstec логотип

BDU:2025-16221

7 месяцев назад

Уязвимость утилиты сжатия и распаковки файлов SAPCAR, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-42992

SAPCAR allows an attacker logged in with high privileges to create a malicious SAR archive in SAPCAR. This could enable the attacker to exploit critical files and directory permissions without breaking signature validation, resulting in potential privilege escalation. This has high impact on integrity, but low impact on confidentiality and availability of the system.

CVSS3: 6.9
0%
Низкий
7 месяцев назад
github логотип
GHSA-64gg-ww65-9f92

SAPCAR allows an attacker logged in with high privileges to create a malicious SAR archive in SAPCAR. This could enable the attacker to exploit critical files and directory permissions without breaking signature validation, resulting in potential privilege escalation. This has high impact on integrity, but low impact on confidentiality and availability of the system.

CVSS3: 6.9
0%
Низкий
7 месяцев назад
fstec логотип
BDU:2025-16221

Уязвимость утилиты сжатия и распаковки файлов SAPCAR, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.9
0%
Низкий
7 месяцев назад

Уязвимостей на страницу