CVE-2019-9896

Description

In PuTTY versions before 0.71 on Windows, local attackers could hijack the application by putting a malicious help file in the same directory as the executable.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
2.157

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in PuTTY (x64) 0.70Windows
Multiple vulnerabilities affected in PuTTY 0.70Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-309217PuTTY (x64) (0.71)
PATCH-309216PuTTY (0.71)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234