CVE Vulnerabilities

CVE-2010-3155

Published: Aug 27, 2010 | Modified: Sep 09, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Untrusted search path vulnerability in Adobe ExtendScript Toolkit (ESTK) CS5 3.5.0.52 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .jsx file.

Affected Software

Name Vendor Start Version End Version
Extendedscript_toolkit_cs5 Adobe 3.5.0.52 (including) 3.5.0.52 (including)

References