PT-2018-17723 · Swisscom · Swisscom Tvmediahelper
Published
2018-03-27
·
Updated
2019-10-03
·
CVE-2018-6766
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Swisscom TVMediaHelper version 1.1.0.50
Description
The issue exists due to the way .dll files are loaded by the SwisscomTVMediaHelper.exe process, specifically with the handling of several DLLs such as
dwmapi.dll, PROPSYS.dll, cscapi.dll, SAMLIB.dll, netbios.dll, winhttp.dll, security.dll, ntmarta.dll, WindowsCodecs.dll, and apphelp.dll. This could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system by loading a .dll of their choice, potentially executing arbitrary code without the user's knowledge.Recommendations
For Swisscom TVMediaHelper version 1.1.0.50, consider restricting the loading of external .dll files by the SwisscomTVMediaHelper.exe process as a temporary mitigation measure. Additionally, monitor the system for any suspicious activity related to the handling of the mentioned DLLs. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Swisscom Tvmediahelper