CVE-2022-37173
Published Aug 30, 2022An issue in the installer of gvim 9.0.0000 allows authenticated attackers to execute arbitrary code via a binary hijacking attack on C:\Program.exe.
Vendor/product archive
2 CVEs tagged to vim / gvim — 1 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
An issue in the installer of gvim 9.0.0000 allows authenticated attackers to execute arbitrary code via a binary hijacking attack on C:\Program.exe.
Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to…