NA

CVE-2023-37378

Published: 03/07/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Nullsoft Scriptable Install System (NSIS) prior to 3.09 mishandles access control for an uninstaller directory.

Vulnerable Product Search on Vulmon Subscribe to Product

nullsoft nullsoft scriptable install system

Vendor Advisories

Debian Bug report logs - #1040880 nsis: CVE-2023-37378 Package: src:nsis; Maintainer for src:nsis is Thomas Gaugler <thomas@dadienet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Tue, 11 Jul 2023 20:57:02 UTC Severity: important Tags: security, upstream Found in versions nsis/308-3, nsis/3061-1 ...