Lucene search

K
githubexploitE25696F9-AF9E-5AB2-ACF2-289D4D02F417
HistoryApr 18, 2022 - 6:59 p.m.

Exploit for Heap-based Buffer Overflow in 7-Zip

2022-04-1818:59:01
322
7-zip
windows
privilege escalation
command execution
cve-2022-29072
out-of-bounds write
vulnerability
mitigation
7zip.chm
nist
heap overflow
siem
microsoft sentinel
alerting
poc
sigma rule
github
script

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.1

Confidence

High

EPSS

0.001

Percentile

49.9%

CVE-2022-29072

> 7-Zip through 21.07 on Windows allows priv…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.1

Confidence

High

EPSS

0.001

Percentile

49.9%