7.8
CVSSv3

CVE-2022-47636

Published: 10/08/2023 Updated: 17/08/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A DLL hijacking vulnerability has been discovered in OutSystems Service Studio 11 11.53.30 build 61739. When a user open a .oml file (OutSystems Modeling Language), the application will load the following DLLs from the same directory av_libGLESv2.dll, libcef.DLL, user32.dll, and d3d10warp.dll. Using a crafted DLL, it is possible to execute arbitrary code in the context of the current logged in user.

Vulnerable Product Search on Vulmon Subscribe to Product

outsystems service studio 11.53.30

Exploits

OutSystems Service Studio version 115330 suffers from a dll hijacking vulnerability ...