Vulnerability Description
DLL Hijacking vulnerability in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, due to the installation of the service in a directory that grants write privileges to standard users, allows attackers to manipulate files, execute arbitrary code, and escalate privileges.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Huddly | Huddlycameraservice | < 8.0.7 |
| Microsoft | Windows | - |
Related Weaknesses (CWE)
References
- https://www.xlent.no/aktuelt/security-disclosure-of-vulnerabilities-cve-2023-452ExploitThird Party Advisory
- https://www.xlent.no/aktuelt/security-disclosure-of-vulnerabilities-cve-2023-452ExploitThird Party Advisory
FAQ
What is CVE-2023-45252?
CVE-2023-45252 is a vulnerability with a CVSS score of 7.8 (HIGH). DLL Hijacking vulnerability in Huddly HuddlyCameraService before version 8.0.7, not including version 7.99, due to the installation of the service in a directory that grants write privileges to standa...
How severe is CVE-2023-45252?
CVE-2023-45252 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-45252?
Check the references section above for vendor advisories and patch information. Affected products include: Huddly Huddlycameraservice, Microsoft Windows.