PT-2010-4580 · Cisco · Cisco Packet Tracer
Ccna
·
Publicado
2010-08-26
·
Atualizado
2017-08-17
·
CVE-2010-3135
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco Packet Tracer version 5.2
Description
The issue allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks. This is achieved via a Trojan horse
wintab32.dll that is located in the same folder as a .pkt or .pkz file.Recommendations
For Cisco Packet Tracer version 5.2, consider removing or restricting access to the
wintab32.dll file to minimize the risk of exploitation. Additionally, avoid using untrusted search paths to prevent DLL hijacking attacks.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cisco Packet Tracer