7.8
CVSSv3

CVE-2016-0014

Published: 13/01/2016 Updated: 16/05/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 mishandle DLL loading, which allows local users to gain privileges via a crafted application, aka "DLL Loading Elevation of Privilege Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows rt -

microsoft windows server 2012 -

microsoft windows server 2008 r2

microsoft windows server 2008 -

microsoft windows server 2012 r2

microsoft windows 8.1 -

microsoft windows 8 -

microsoft windows 7 -

microsoft windows 10 -

microsoft windows 10 1511

microsoft windows rt 8.1 -

microsoft windows vista -

Exploits

WiX Toolset installers suffer from a DLL hijacking vulnerability ...

Github Repositories

CVE_Assessment_04_2019 This is a review of Snagit version 19112860 The software relies in the use of the Windows installer XML (WiX) toolset which is vulnerable to elevation of privilege by loading dynamic link libraries (CVE-2016-0014) The same file structure from this known vulnerability was found in the software In addition, it was identified security risks due to comp