CVE-2018-16190 Vulnerability Details

  /     /     /  

CVE-2018-16190 Metadata Quick Info

CVE Published: 13/02/2019 | CVE Updated: 05/08/2024 | CVE Year: 2018
Source: jpcert | Vendor: Micco | Product: UNARJ32.DLL for Win32, LHMelting for Win32, and LMLzh32.DLL
Status : PUBLISHED

CVE-2018-16190 Description

Untrusted search path vulnerability in UNARJ32.DLL for Win32, LHMelting for Win32, and LMLzh32.DLL (UNARJ32.DLL for Win32 Ver 1.10.1.25 and earlier, LHMelting for Win32 Ver 1.65.3.6 and earlier, LMLzh32.DLL Ver 2.67.1.2 and earlier) allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Untrusted search path vulnerability
Source: Micco

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).