CVE-2026-48391 - CERT CVE
ID CVE-2026-48391
Sažetak Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Reference
CVSS
Base: 8.2
Impact: 6.0
Exploitability:1.5
Pristup
VektorSloženostAutentikacija
LOCAL LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 03-08-2026 - 13:36
Objavljeno 28-07-2026 - 19:17