PT-2010-4580 · Cisco · Cisco Packet Tracer

Ccna

·

Published

2010-08-26

·

Updated

2017-08-17

·

CVE-2010-3135

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cisco Packet Tracer version 5.2
Description The issue allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks. This is achieved via a Trojan horse wintab32.dll that is located in the same folder as a .pkt or .pkz file.
Recommendations For Cisco Packet Tracer version 5.2, consider removing or restricting access to the wintab32.dll file to minimize the risk of exploitation. Additionally, avoid using untrusted search paths to prevent DLL hijacking attacks.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-3135

Affected Products

Cisco Packet Tracer