PT-2022-7990 · Viscosity · Viscosity
Kacper Szurek
·
Published
2022-06-30
·
Updated
2022-07-09
·
CVE-2017-20123
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Viscosity version 1.6.7
Description
A critical issue affects an unknown part of the component DLL Handler, leading to an untrusted search path. The manipulation can be initiated remotely. The issue has been disclosed publicly.
Recommendations
For Viscosity version 1.6.7, upgrade to version 1.6.8 to address this issue.
Exploit
Fix
Untrusted Search Path
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Viscosity