vendor:
Dupehunter Professional
by:
anT!-Tr0J4n
7.5
CVSS
HIGH
Arbitrary Code Execution
CWE
Product Name: Dupehunter Professional
Affected Version From: 9.0.0.3911
Affected Version To: 9.0.0.3911
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP sp3
Unknown
Dupehunter Professional DLL Hijacking Exploit
An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file.
Mitigation:
Unknown