CVE-2023-49114

A DLL hijacking vulnerability was identified in the Qognify VMS Client Viewer version 7.1 or higher, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL, if some specific pre-conditions are met.
CVSS

No CVSS.

Configurations

No configuration.

History

03 Mar 2024, 03:15

Type Values Removed Values Added
Summary
  • (es) Se identificó una vulnerabilidad de secuestro de DLL en Qognify VMS Client Viewer versión 7.1 o superior, que permite a los usuarios locales ejecutar código arbitrario y obtener mayores privilegios mediante la colocación cuidadosa de un DLL malicioso, si se cumplen algunas condiciones previas específicas.
References
  • () http://seclists.org/fulldisclosure/2024/Mar/10 -

26 Feb 2024, 16:32

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-26 16:27

Updated : 2024-03-03 03:15


NVD link : CVE-2023-49114

Mitre link : CVE-2023-49114

CVE.ORG link : CVE-2023-49114


JSON object : View

Products Affected

No product.

CWE
CWE-427

Uncontrolled Search Path Element