PT-2024-3033 · Vt Studio · Vt Studio

Published

2024-04-02

·

Updated

2025-06-30

·

CVE-2024-28099

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions VT STUDIO versions 8.32 and earlier
Description The issue is related to an uncontrolled element of the path search, which may lead to insecurely loading Dynamic Link Libraries. This could allow a remote attacker to execute arbitrary code with the privileges of the running application.
Recommendations For VT STUDIO versions 8.32 and earlier, as a temporary workaround, consider restricting the loading of Dynamic Link Libraries to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-03217
CVE-2024-28099

Affected Products

Vt Studio