Metrics
Affected Vendors & Products
Wed, 04 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Microsoft
Microsoft windows Wondershare Wondershare filmora |
|
CPEs | cpe:2.3:a:wondershare:filmora:14.5.16:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:x64:* |
|
Vendors & Products |
Microsoft
Microsoft windows Wondershare Wondershare filmora |
Wed, 28 May 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 26 May 2025 10:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, has been found in Wondershare Filmora 14.5.16. Affected by this issue is some unknown functionality in the library CRYPTBASE.dll of the file NFWCHK.exe of the component Installer. The manipulation leads to uncontrolled search path. Attacking locally is a requirement. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Wondershare Filmora Installer NFWCHK.exe uncontrolled search path | |
Weaknesses | CWE-426 CWE-427 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-05-26T10:00:07.551Z
Updated: 2025-05-28T17:35:50.771Z
Reserved: 2025-05-25T17:16:40.035Z
Link: CVE-2025-5180

Updated: 2025-05-27T14:18:40.267Z

Status : Analyzed
Published: 2025-05-26T10:15:22.250
Modified: 2025-06-03T15:45:24.887
Link: CVE-2025-5180

No data.