CVE-2025-12418EPSS p4.9%
CVE-2025-12418CVE-2025-12418
Description
Potential Denial of Service issue in all supported versions of Revenera InstallShield version 2025 R1, 2024 R2, 2023 R2, and prior. When e.g., a local administrator performs an uninstall, a symlink may get followed on removal of a user writeable configuration directory and induce a Denial of Service as a result. The issue is resolved through the hotfixes InstallShield2025R1-CVE-2025-12418-SecurityPatch, InstallShield2024R2-CVE-2025-12418-SecurityPatch, and InstallShield2023R2-CVE-2025-12418-SecurityPatch.
Scoring
| EPSS | 0.16% probability of exploitation · percentile 4.9% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-07 |