9.3
CVSSv2

CVE-2010-3967

Published: 16/12/2010 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in Microsoft Windows Movie Maker (WMM) 2.6 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a Movie Maker (MSWMM) file, aka "Insecure Library Loading Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows_movie_maker 2.6

Exploits

/* Exploit Title: Microsoft Windows Movie Maker <= 2640380 DLL Hijacking Exploit (hhctrlocx) Date: 24/08/2010 Author: TheLeader Email: gsog2009 [a7] hotmail [d0t] com Software Link: wwwmicrosoftcom/downloads/detailsaspx?FamilyID=d6ba5972-328e-4df7-8f9d-068fc0f80cfc&displaylang=en Version: 2640380 and prior Tested on: Windows ...