Loading HuntDB...

GHSA-9x6g-6cj7-h5vc

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

Multiple DLL Search Order Hijack vulnerabilities were addressed in the SanDisk Security Installer for
Windows that could allow attackers with local access to execute arbitrary code by executing the installer
in the same folder as the malicious DLL. This can lead to the execution of arbitrary
code with the privileges of the vulnerable application or obtain a certain level of persistence
on the compromised host. 

Related CVEs

Key Information

GHSA ID
GHSA-9x6g-6cj7-h5vc
Published
November 15, 2023 9:35 PM
Last Modified
November 23, 2023 12:30 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 7, 2025 6:28 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.