Логотип exploitDog
bind:CVE-2025-49571
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-49571

Количество 3

Количество 3

nvd логотип

CVE-2025-49571

6 месяцев назад

Substance3D - Modeler versions 1.22.0 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses an uncontrolled search path to locate critical resources such as programs, an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue does not require user interaction.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-vpqm-gwg6-v658

6 месяцев назад

Substance3D - Modeler versions 1.22.0 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses an uncontrolled search path to locate critical resources such as programs, an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue does not require user interaction.

CVSS3: 7.8
EPSS: Низкий
fstec логотип

BDU:2025-09893

6 месяцев назад

Уязвимость программного обеспечения для 3D-моделирования Adobe Substance 3D Modeler, связанная с неконтролируемым элементом пути поиска, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-49571

Substance3D - Modeler versions 1.22.0 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses an uncontrolled search path to locate critical resources such as programs, an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue does not require user interaction.

CVSS3: 7.8
0%
Низкий
6 месяцев назад
github логотип
GHSA-vpqm-gwg6-v658

Substance3D - Modeler versions 1.22.0 and earlier are affected by an Uncontrolled Search Path Element vulnerability that could result in arbitrary code execution in the context of the current user. If the application uses an uncontrolled search path to locate critical resources such as programs, an attacker could modify that search path to point to a malicious program, which the targeted application would then execute. Exploitation of this issue does not require user interaction.

CVSS3: 7.8
0%
Низкий
6 месяцев назад
fstec логотип
BDU:2025-09893

Уязвимость программного обеспечения для 3D-моделирования Adobe Substance 3D Modeler, связанная с неконтролируемым элементом пути поиска, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.8
0%
Низкий
6 месяцев назад

Уязвимостей на страницу