PT-2018-8238 · Moxa · Moxa Softnvr-Ia Live Viewer

Published

2018-01-18

·

Updated

2019-10-09

·

CVE-2017-5170

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Moxa SoftNVR-IA Live Viewer versions 3.30.3122 and prior
Description: An Uncontrolled Search Path Element issue, also known as DLL Hijacking, has been identified. This issue allows an attacker to exploit the vulnerability by renaming a malicious DLL to match the application's requirements, which the application fails to verify. The attacker must have administrative access to the default installation location to place the malicious DLL. Once the DLL is loaded by the application, it can execute malicious code at the application's privilege level.
Recommendations: For Moxa SoftNVR-IA Live Viewer versions 3.30.3122 and prior, consider restricting access to the default install location to prevent an attacker from planting a malicious DLL. As a temporary workaround, monitor the application's behavior and system logs for suspicious activity. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-5170

Affected Products

Moxa Softnvr-Ia Live Viewer