CVE-2018-20211
Exiftool 8.3.2.0 DLL Hijacking
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
ExifTool 8.32 allows local users to gain privileges by creating a %TEMP%\par-%username%\cache-exiftool-8.32 folder with a victim's username, and then copying a Trojan horse ws32_32.dll file into this new folder, aka DLL Hijacking. NOTE: 8.32 is an obsolete version from 2010 (9.x was released starting in 2012, and 10.x was released starting in 2015).
La versión 8.32 de ExifTool permite a los usuarios locales ganar privilegios creando una carpeta %TEMP%\par-%username%\cache-exiftool-8.32 con el nombre de una víctima y copiando un archivo troyano "ws32_32.dll" a esta nueva carpeta, también conocido como DLL Hijacking. NOTA: La 8.32 es una versión obsoleta del año 2010 (las 9.x se empezaron a distribuir en el 2012 y las 10x en el 2015).
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-12-18 CVE Reserved
- 2018-12-21 CVE Published
- 2024-05-25 EPSS Updated
- 2024-08-05 CVE Updated
- 2024-08-05 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-427: Uncontrolled Search Path Element
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
http://packetstormsecurity.com/files/150892/Exiftool-8.3.2.0-DLL-Hijacking.html | 2024-08-05 | |
http://seclists.org/fulldisclosure/2018/Dec/44 | 2024-08-05 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Exiftool Project Search vendor "Exiftool Project" | Exiftool Search vendor "Exiftool Project" for product "Exiftool" | 8.32 Search vendor "Exiftool Project" for product "Exiftool" and version "8.32" | - |
Affected
|