CVE Vulnerabilities

CVE-2012-1849

Published: Jun 12, 2012 | Modified: Oct 12, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Untrusted search path vulnerability in Microsoft Lync 2010, 2010 Attendee, and 2010 Attendant allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .ocsmeet file, aka Lync Insecure Library Loading Vulnerability.

Affected Software

Name Vendor Start Version End Version
Lync Microsoft 2010 2010
Lync Microsoft 2010 2010
Lync Microsoft 2010 2010
Lync Microsoft 2010 2010
Lync Microsoft 2010 2010

References