CVE-2025-0567
CVE-2025-0567
Título es
CVE-2025-0567
Dom, 19/01/2025 – 08:15
Tipo
CWE-426
Gravedad v2.0
3.50
Gravedad 2.0 Txt
LOW
Título en
CVE-2025-0567
Descripción en
A vulnerability classified as problematic was found in Epic Games Launcher up to 17.2.1. This vulnerability affects unknown code in the library profapi.dll of the component Installer. The manipulation leads to untrusted search path. Attacking locally is a requirement. The complexity of an attack is rather high. The exploitation appears to be difficult.
19/01/2025
19/01/2025
Vector CVSS:4.0
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Vector CVSS:3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L
Vector CVSS:2.0
AV:L/AC:H/Au:S/C:P/I:P/A:P
Gravedad 4.0
2.00
Gravedad 4.0 txt
LOW
Gravedad 3.1 (CVSS 3.1 Base Score)
4.50
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
MEDIUM
Referencias
Enviar en el boletín
Off
