PT-2010-4595 · Adobe · Premier Pro Cs4

Kingcope

·

Publicado

2010-08-27

·

Atualizado

2018-10-10

·

CVE-2010-3150

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Premier Pro CS4 version 4.0.0
Description The issue allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks. This can be achieved via a Trojan horse ibfs32.dll located in the same folder as certain file types, including .pproj, .prfpset, .prexport, .prm, .prmp, .prpreset, .prproj, .prsl, .prtl, or .vpr files.
Recommendations For Adobe Premier Pro CS4 version 4.0.0, consider removing or restricting access to the ibfs32.dll file in folders containing the specified file types to minimize the risk of exploitation. Additionally, avoid opening projects or files from untrusted sources. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2010-3150

Produtos afetados

Premier Pro Cs4