PT-2015-4161 · Cimon · Cimon Cmnview

Published

2015-03-14

·

Updated

2015-08-06

·

CVE-2014-9207

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions CIMON CmnView versions 2.14.0.1 through 3.x before UltimateAccess 3.02
Description The issue allows local users to gain privileges via a Trojan horse DLL in the current working directory due to an untrusted search path vulnerability in CmnView.exe.
Recommendations For versions 2.14.0.1 through 3.x before UltimateAccess 3.02, update to UltimateAccess 3.02 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2014-9207

Affected Products

Cimon Cmnview