Multiple untrusted search path vulnerabilities in e-press ONE Office E-NoteTaker and E-Zip allow local users to gain privileges via a Trojan horse (1) mfc71enu.dll or (2) mfc71loc.dll file in the current working directory, as demonstrated by a directory that contains a .txt, .rar, or .tar file. NOTE: some of these details are obtained from third party information.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:22
Type | Values Removed | Values Added |
---|---|---|
References | () http://core.yehg.net/lab/pr0js/advisories/dll_hijacking/%5Be-press-one_office%5D_insecure_dll_hijacking - | |
References | () http://secunia.com/advisories/41404 - Vendor Advisory |
Information
Published : 2012-09-06 10:41
Updated : 2024-11-21 01:22
NVD link : CVE-2010-5206
Mitre link : CVE-2010-5206
CVE.ORG link : CVE-2010-5206
JSON object : View
Products Affected
e-press
- one_office_e-zip
- one_office_e-notetaker
CWE