ZeroHour

CVE-2017-2208

CVSS 3.0
7.8 high
EPSS
1%p70
Published
()
Modified
Description

Untrusted search path vulnerability in Installer of Electronic tendering and bid opening system available prior to June 12, 2017 allows an attacker to execute arbitrary code via a specially crafted executable file in an unspecified directory.

Vendors
acquisition technology and logistics agency
Products
installer of electronic tendering
Weakness
CWE-426
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.