Untrusted search path vulnerability in Self-Extracting Archives created by UNLHA32.DLL prior to Ver 3.00 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
References
Link | Resource |
---|---|
http://micco.mars.jp/vul/2017/mhsvi20170515_01.htm | Vendor Advisory |
http://jvn.jp/en/jp/JVN52168232/index.html | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-02-13 10:29
Updated : 2019-02-19 11:42
NVD link : CVE-2018-16189
Mitre link : CVE-2018-16189
JSON object : View
CWE
CWE-426
Untrusted Search Path
Products Affected
microsoft
- windows
micco
- unlha32.dll