7.8
CVE-2017-20051
- EPSS 0.56%
- Veröffentlicht 16.06.2022 07:15:07
- Zuletzt bearbeitet 30.09.2026 18:17:17
- Erkennungen
InnoSetup Installer uncontrolled search path
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: The sole source documents PE-format conformance defects in innosetup-5.5.9.exe with no exploit, attack path, or untrusted search path condition (CWE-426/427), and the author states Windows loads these files normally; the record's remote/exploited claims are unsupported, as is the product maintainer's contention.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.56% | 0.434 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|