VYPR
High severity7.8NVD Advisory· Published Aug 30, 2022· Updated Jun 17, 2026

CVE-2022-37173

CVE-2022-37173

Description

An issue in the installer of gvim 9.0.0000 allows authenticated attackers to execute arbitrary code via a binary hijacking attack on C:\Program.exe.

Affected products

3
  • cpe:2.3:a:vim:gvim:9.0.0000:*:*:*:*:*:*:*
  • Gvim/gvimcpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: =9.0.0000

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.