6.9
CVE-2010-5210
- EPSS 0.35%
- Veröffentlicht 06.09.2012 10:41:55
- Zuletzt bearbeitet 16.06.2026 23:26:20
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Untrusted search path vulnerability in Sorax Reader 2.0.3129.70 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .pdf file. NOTE: some of these details are obtained from third party information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Soraxsoft ≫ Sorax Reader Version2.0.3129.70
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.35% | 0.263 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.9 | 3.4 | 10 |
AV:L/AC:M/Au:N/C:C/I:C/A:C
|
http://core.yehg.net/lab/pr0js/advisories/dll_hijacking/%5Bsorax_pdf_reader%5D_2.0_insecure_dll_hijacking
http://secunia.com/advisories/41411