Format Factory 4.1.0 has a DLL Hijacking Vulnerability because an untrusted search path is used for msimg32.dll, WindowsCodecs.dll, and dwmapi.dll.
References
Link | Resource |
---|---|
http://www.kth.ninja/2017/08/format-factory-dll-hijacking.html | Exploit Mitigation Third Party Advisory |
Configurations
History
No history.
Information
Published : 2017-08-03 15:29
Updated : 2017-08-09 17:50
NVD link : CVE-2017-12414
Mitre link : CVE-2017-12414
CVE.ORG link : CVE-2017-12414
JSON object : View
Products Affected
pcfreetime
- format_factory
CWE
CWE-426
Untrusted Search Path