5.5
CVE-2023-29081
- EPSS 0.14%
- Veröffentlicht 26.01.2024 20:15:54
- Zuletzt bearbeitet 21.11.2024 07:56:30
- Erkennungen
InstallShield Symlink Vulnerability Affecting Suite Project Setups
A vulnerability has been reported in Suite Setups built with versions prior to InstallShield 2023 R2. This vulnerability may allow locally authenticated users to cause a Denial of Service (DoS) condition when handling move operations on local, temporary folders.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Flexera ≫ Installshield Version 2016 Update -
Flexera ≫ Installshield Version 2016 Update sp1
Flexera ≫ Installshield Version 2016 Update sp2
Flexera ≫ Installshield Version 2017 Update -
Flexera ≫ Installshield Version 2017 Update sp1
Flexera ≫ Installshield Version 2018 Update -
Flexera ≫ Installshield Version 2018 Update r2
Flexera ≫ Installshield Version 2018 Update sp1
Flexera ≫ Installshield Version 2019 Update -
Flexera ≫ Installshield Version 2019 Update r2
Flexera ≫ Installshield Version 2019 Update r3
Flexera ≫ Installshield Version 2020 Update -
Flexera ≫ Installshield Version 2020 Update r2
Flexera ≫ Installshield Version 2020 Update r3
Flexera ≫ Installshield Version 2020 Update r3sp1
Flexera ≫ Installshield Version 2021 Update r1
Flexera ≫ Installshield Version 2021 Update r2
Flexera ≫ Installshield Version 2022 Update r1
Flexera ≫ Installshield Version 2022 Update r2
Flexera ≫ Installshield Version 2023 Update r1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.04 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
| Flexera | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-276 Incorrect Default Permissions
During installation, installed file permissions are set to allow anyone to modify those files.
https://community.flexera.com/t5/InstallShield-Knowledge-Base/CVE-2023-29081-InstallShield-Symlink-Vulnerability-Affecting/ta-p/305052