OSV 1.4.0 · unreviewed · 修改于 2022-02-03 08:00
发布时间
2022-01-27 08:01
GitHub 审查时间
—
NVD 发布时间
2022-01-26 23:15
源文件
advisories/unreviewed/2022/01/GHSA-wj79-qqhx-jqhr/GHSA-wj79-qqhx-jqhr.json
In ListCheck.exe in Acer Care Center 4.x before 4.00.3038, a vulnerability in the loading mechanism of Windows DLLs could allow a local attacker to perform a DLL hijacking attack. This vulnerability is due to incorrect handling of directory search paths at run time. An attacker could exploit this vulnerability by placing a malicious DLL file on the targeted system. This file will execute when the vulnerable application launches. A successful exploit could allow the attacker to execute arbitrary code on the targeted system with local administrator privileges.
该公告没有提供结构化的受影响软件包信息。