Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2024-7886
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Scooter Software Beyond Compare 7zxa.dll uncontrolled search path
Source: NVD (National Vulnerability Database)
Vulnerability Description
A vulnerability has been found in Scooter Software Beyond Compare up to 3.3.5.15075 and classified as critical. Affected by this vulnerability is an unknown functionality in the library 7zxa.dll. The manipulation leads to uncontrolled search path. Attacking locally is a requirement. The real existence of this vulnerability is still doubted at the moment. The vendor explains that a system must be breached before exploiting this issue. They are not planning on making any changes to address it.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
对搜索路径元素未加控制
Source: NVD (National Vulnerability Database)
Vulnerability Title
Scooter Software Beyond Compare 代码问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Scooter Software Beyond Compare是Scooter Software公司的内容比较工具软件。 Scooter Software Beyond Compare 3.3.5.15075及之前版本存在代码问题漏洞,该漏洞源于库7zxa.dll中的一个未知功能,此问题会导致搜索路径不受控制。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
Scooter SoftwareBeyond Compare 3.3.5.15075 -
II. Public POCs for CVE-2024-7886
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2024-7886
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2024-7886

No comments yet


Leave a comment