PT-2018-17723 · Swisscom · Swisscom Tvmediahelper

Published

2018-03-27

·

Updated

2019-10-03

·

CVE-2018-6766

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Swisscom TVMediaHelper version 1.1.0.50
Description The issue exists due to the way .dll files are loaded by the SwisscomTVMediaHelper.exe process, specifically with the handling of several DLLs such as dwmapi.dll, PROPSYS.dll, cscapi.dll, SAMLIB.dll, netbios.dll, winhttp.dll, security.dll, ntmarta.dll, WindowsCodecs.dll, and apphelp.dll. This could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system by loading a .dll of their choice, potentially executing arbitrary code without the user's knowledge.
Recommendations For Swisscom TVMediaHelper version 1.1.0.50, consider restricting the loading of external .dll files by the SwisscomTVMediaHelper.exe process as a temporary mitigation measure. Additionally, monitor the system for any suspicious activity related to the handling of the mentioned DLLs. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-6766

Affected Products

Swisscom Tvmediahelper