CVE-2018-6700 Vulnerability Details

  /     /     /  

CVE-2018-6700 Metadata Quick Info

CVE Published: 24/09/2018 | CVE Updated: 05/08/2024 | CVE Year: 2018
Source: trellix | Vendor: McAfee | Product: True Key (TK)
Status : PUBLISHED

CVE-2018-6700 Description

DLL Search Order Hijacking vulnerability in Microsoft Windows Client in McAfee True Key (TK) before 5.1.165 allows local users to execute arbitrary code via specially crafted malware.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: DLL Search Order Hijacking vulnerability
Source: McAfee

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).