PT-2018-8950 · Microsoft · Onedrive

Takashi Yoshikawa

·

Published

2018-06-26

·

Updated

2018-08-17

·

CVE-2018-0592

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft OneDrive (affected versions not specified)
Description The issue concerns an untrusted search path vulnerability that allows an attacker to gain privileges. This can be achieved by using a Trojan horse DLL in an unspecified directory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-0592

Affected Products

Onedrive