CVE-2010-5210

Untrusted search path vulnerability in Sorax Reader 2.0.3129.70 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .pdf file. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:soraxsoft:sorax_reader:2.0.3129.70:*:*:*:*:*:*:*

History

21 Nov 2024, 01:22

Type Values Removed Values Added
References () http://core.yehg.net/lab/pr0js/advisories/dll_hijacking/%5Bsorax_pdf_reader%5D_2.0_insecure_dll_hijacking - () http://core.yehg.net/lab/pr0js/advisories/dll_hijacking/%5Bsorax_pdf_reader%5D_2.0_insecure_dll_hijacking -
References () http://secunia.com/advisories/41411 - Vendor Advisory () http://secunia.com/advisories/41411 - Vendor Advisory

Information

Published : 2012-09-06 10:41

Updated : 2024-11-21 01:22


NVD link : CVE-2010-5210

Mitre link : CVE-2010-5210

CVE.ORG link : CVE-2010-5210


JSON object : View

Products Affected

soraxsoft

  • sorax_reader