CNNVD-202511-758 Information
CNNVD ID
CNNVD-202511-758
Related CVE
- CNNVD Published: 2025-11-07
Description (Chinese)
Revenera InstallShield(Flexera InstallShield)是Revenera公司的一个开发包。用于构建 Windows 安装程序和 MSIX 软件包。 Revenera InstallShield(Flexera InstallShield) 2025 R1版本、2024 R2版本、2023 R2版本和之前版本存在安全漏洞,该漏洞源于删除用户可写配置目录时可能跟随符号链接,可能导致拒绝服务攻击。
Description (English)
Revenera Install Shield (Flexera Install Shield) is a development package for Revera. For the construction of Windows Installer and MSIX packages. Revenera Install Shield (Flexera Install Shield) 2025 R1, 2024 R2, 2023 R2 and previous versions had a security loophole, which stemmed from the possibility of following a symbol link to remove the user-enabled profile and could lead to a denial of service attack.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
Revenera
Published
2025-11-07
Last Modified
2026-02-24
References
https://community.revenera.com/s/article/CVE-2025-12418-Potential-Unintended-File-Deletion-Issue-Caused-by-InstallShield-Suite-Uninstallation-Process https://access.redhat.com/security/cve/cve-2025-12418
Patch
https://community.revenera.com/s/downloads-page
Share on: