Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3128

Опубликовано: 26 авг. 2010
Источник: nvd
CVSS2: 9.3
EPSS Низкий

Описание

Untrusted search path vulnerability in TeamViewer 5.0.8703 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .tvs or .tvc file.

Комментарий

Per: http://cwe.mitre.org/data/definitions/426.html

CWE-426 - 'Untrusted Search Path Vulnerability'

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:teamviewer:teamviewer:*:*:*:*:*:*:*:*
Версия до 5.0.8703 (включая)
cpe:2.3:a:teamviewer:teamviewer:1.85:*:*:*:*:*:*:*
cpe:2.3:a:teamviewer:teamviewer:2.44:*:*:*:*:*:*:*
cpe:2.3:a:teamviewer:teamviewer:3.6.5523:*:*:*:*:*:*:*
cpe:2.3:a:teamviewer:teamviewer:4.1.8107:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.02214
Низкий

9.3 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

Untrusted search path vulnerability in TeamViewer 5.0.8703 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .tvs or .tvc file.

EPSS

Процентиль: 84%
0.02214
Низкий

9.3 Critical

CVSS2

Дефекты

NVD-CWE-Other