vendor:
Visio
by:
Pepelux
7.5
CVSS
HIGH
DLL Hijacking
CWE
Product Name: Visio
Affected Version From: Microsoft Visio 2007
Affected Version To: Microsoft Visio 2007
Patch Exists: NO
Related CWE:
CPE: a:microsoft:visio:2007
Platforms Tested: Windows XP SP2, Windows XP SP3
2010
Microsoft Visio DLL Hijacking Vulnerability
An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file.
Mitigation:
Unknown