In PuTTY versions before 0.71 on Windows, local attackers could hijack the application by putting a malicious help file in the same directory as the executable.
2019-03-21T16:01:17.813
2024-11-21T04:52:31.827
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | putty | putty | < 0.71 | Yes |
Operating System | microsoft | windows | - | No |
Application | opensuse | backports_sle | 15.0 | Yes |
Operating System | opensuse | leap | 15.0 | Yes |