An installer that loads or executes files using an unconstrained search path may be vulnerable to substitute files under control of an attacker being loaded or executed instead of the intended files.
References
Configurations
Configuration 1 (hide)
|
History
13 Feb 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) An installer that loads or executes files using an unconstrained search path may be vulnerable to substitute files under control of an attacker being loaded or executed instead of the intended files. |
21 Nov 2024, 07:27
Type | Values Removed | Values Added |
---|---|---|
References | () https://developer.arm.com/documentation/ka005596/latest - Vendor Advisory | |
References | () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00930.html - |
13 Feb 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
08 Aug 2023, 14:18
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CPE | cpe:2.3:a:arm:arm_development_studio:*:*:*:*:*:*:*:* cpe:2.3:a:arm:ds_development_studio:*:*:*:*:*:*:*:* |
|
CWE | CWE-427 | |
References | (MISC) https://developer.arm.com/documentation/ka005596/latest - Vendor Advisory |
27 Jul 2023, 22:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-27 22:15
Updated : 2025-02-13 17:15
NVD link : CVE-2022-43703
Mitre link : CVE-2022-43703
CVE.ORG link : CVE-2022-43703
JSON object : View
Products Affected
arm
- arm_development_studio
- ds_development_studio
CWE
CWE-427
Uncontrolled Search Path Element