CVE-2015-9267
published 2018-10-01CVE-2015-9267: Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a…
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNIHAN
EPSS
0.39%
31.4th percentile
Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | nsis | < nsis 2.50-1 (bookworm) | nsis 2.50-1 (bookworm) |
| nullsoft | nullsoft_scriptable_install_system | < 2.49 | 2.49 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.03.6LOWAV:L/AC:L/Au:N/C:N/I:P/A:P
osv5.5MEDIUM
vendor_debian5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2015-9267: nsis - Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder loca...
vendor_debian·2015·CVSS 5.5
CVE-2015-9267 [MEDIUM] CVE-2015-9267: nsis - Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder loca...
Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.
Scope: local
bookworm: resolved (fixed in 2.50-1)
bullseye: resolved (fixed in 2.50-1)
forky: resolved (fixed in 2.50-1)
sid: resolved (fixed in 2.50-1)
trixie: resolved (fixed in 2.50-1)
GHSA
GHSA-q9w8-9j2h-5cw2: Nullsoft Scriptable Install System (NSIS) before 2
ghsa_unreviewed·2022-05-13
CVE-2015-9267 [MEDIUM] CWE-269 GHSA-q9w8-9j2h-5cw2: Nullsoft Scriptable Install System (NSIS) before 2
Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.
OSV
CVE-2015-9267: Nullsoft Scriptable Install System (NSIS) before 2
osv·2018-10-01·CVSS 5.5
CVE-2015-9267 [MEDIUM] CVE-2015-9267: Nullsoft Scriptable Install System (NSIS) before 2
Nullsoft Scriptable Install System (NSIS) before 2.49 uses temporary folder locations that allow unprivileged local users to overwrite files. This allows a local attack in which either a plugin or the uninstaller can be replaced by a Trojan horse program.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2018-10-01
Published