Nullsoft Scriptable Install System (NSIS) 2.38

CPE Details

Nullsoft Scriptable Install System (NSIS) 2.38
2.38
2019-08-19
14h07 +00:00
2019-08-19
14h07 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:nullsoft:nullsoft_scriptable_install_system:2.38:*:*:*:*:*:*:*

Informations

Vendor

nullsoft

Product

nullsoft_scriptable_install_system

Version

2.38

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-37378 2023-07-02 22h00 +00:00 Nullsoft Scriptable Install System (NSIS) before 3.09 mishandles access control for an uninstaller directory.
5.3
Medium
CVE-2015-9267 2018-10-01 06h00 +00:00 Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.
5.5
Medium
CVE-2015-9268 2018-10-01 06h00 +00:00 Nullsoft Scriptable Install System (NSIS) before 2.49 has unsafe implicit linking against Version.dll. In other words, there is no protection mechanism in which a wrapper function resolves the dependency at an appropriate time during runtime.
7.8
High