vendor:
Adobe Dreamweaver CS4
by:
Pepelux
7.5
CVSS
HIGH
DLL Hijacking
427
CWE
Product Name: Adobe Dreamweaver CS4
Affected Version From: Adobe Dreamweaver CS4 v10.0 Build 4117
Affected Version To: Adobe Dreamweaver CS4 v10.0 Build 4117
Patch Exists: NO
Related CWE:
CPE: a:adobe:dreamweaver:cs4
Platforms Tested: Windows XP SP2, Windows XP SP3
2010
Adobe Dreamweaver CS4 DLL Hijacking Vulnerability
Adobe Dreamweaver CS4 is prone to a vulnerability that lets attackers execute arbitrary code. An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Linked Library (DLL) file.
Mitigation:
Ensure that the application is updated to the latest version. Do not open files from untrusted network share locations.