Vulnerability Description
Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse ehtrace.dll that is located in the current working directory.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kmplayer | Kmplayer | 3.2.0.19 |
References
- http://osvdb.org/81558
- http://packetstormsecurity.org/files/112218/KMPlayer-3.2.0.19-DLL-Hijack.htmlExploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75193
- http://osvdb.org/81558
- http://packetstormsecurity.org/files/112218/KMPlayer-3.2.0.19-DLL-Hijack.htmlExploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75193
FAQ
What is CVE-2012-3841?
CVE-2012-3841 is a vulnerability with a CVSS score of 9.3 (HIGH). Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse ehtrace.dll that is located in the current wo...
How severe is CVE-2012-3841?
CVE-2012-3841 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-3841?
Check the references section above for vendor advisories and patch information. Affected products include: Kmplayer Kmplayer.