vendor:
PowerDVD
by:
Inj3cti0n P4ck3t
7.5
CVSS
HIGH
Arbitrary Code Execution
Not specified
CWE
Product Name: PowerDVD
Affected Version From: PowerDVD 5.00.1107
Affected Version To: Not specified
Patch Exists: NO
Related CWE: Not specified
CPE: Not specified
Platforms Tested: Windows XP (Version 5.1 Service Pack 3)
2010
PowerDVD DLL Hijacking Exploit
This exploit allows attackers to execute arbitrary code by enticing a user to open a file from a network share location that contains a specially crafted DLL file. The vulnerability affects PowerDVD version 5.00.1107 and potentially other versions as well.
Mitigation:
Not specified