Search Path Vulnerability in NSA Ghidra Software
CVE-2019-17664
7.8HIGH
What is CVE-2019-17664?
NSA Ghidra, a software reverse engineering suite, has a vulnerability stemming from its handling of the Java process working directory. When Ghidra is executed from a specified path, this directory becomes untrusted. Consequently, when utilizing the Python interpreter via the Ghidra Codebrowser, the application attempts to run cmd.exe from this working directory, which can lead to potential arbitrary command execution by malicious actors manipulating the search path.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
