6.9
CVSSv2

CVE-2014-1680

Published: 14/02/2014 Updated: 29/08/2017
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in Bandisoft Bandizip prior to 3.10 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory.

Vulnerable Product Search on Vulmon Subscribe to Product

bandisoft bandizip 3.06

bandisoft bandizip 3.05

bandisoft bandizip

bandisoft bandizip 3.02

bandisoft bandizip 3.01

bandisoft bandizip 3.00

bandisoft bandizip 3.04

bandisoft bandizip 3.03

bandisoft bandizip 3.08

bandisoft bandizip 3.07

Exploits

Bandizip version 309 suffers from a dll hijacking vulnerability ...