PT-2017-15220 · Vivaldi · Vivaldi

Eiji James Yoshida

·

Publicado

2017-04-28

·

Atualizado

2017-05-11

·

CVE-2017-2156

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Vivaldi versions prior to 1.7.735.48
Description The issue concerns an untrusted search path vulnerability in the Vivaldi installer for Windows. This vulnerability allows an attacker to execute arbitrary code via a specially crafted executable file in an unspecified directory.
Recommendations For versions prior to 1.7.735.48, update to version 1.7.735.48 or later to resolve the issue.

Correção

Untrusted Search Path

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-2156

Produtos afetados

Vivaldi