CyMiInstaller322 ActiveX which runs MIPLATFORM downloads files required to run applications. A vulnerability in downloading files by CyMiInstaller322 ActiveX caused by an attacker to download randomly generated DLL files and MIPLATFORM to load those DLLs due to insufficient verification.
References
Link | Resource |
---|---|
https://www.tobesoft.com/Index.do | Third Party Advisory |
https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=35479 | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-06-30 07:15
Updated : 2020-07-07 07:49
NVD link : CVE-2019-19161
Mitre link : CVE-2019-19161
JSON object : View
CWE
CWE-426
Untrusted Search Path
Products Affected
cymiinstaller322_activex_project
- cymiinstaller322_activex
microsoft
- windows_7
- windows_10
- windows_8