CVE-2016-9274

CWE-4263 documents3 sources
Severity
7.8HIGH
EPSS
0.4%
top 42.19%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 11
Latest updateMay 13

Description

Untrusted search path vulnerability in Git 1.x for Windows allows local users to gain privileges via a Trojan horse git.exe file in the current working directory. NOTE: 2.x is unaffected.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

NVDgit1.0.01.9.4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xrrq-qjmc-74g7: Untrusted search path vulnerability in Git 12022-05-13
CVEList
CVE-2016-9274: Untrusted search path vulnerability in Git 12016-11-11