CVE Vulnerabilities

CVE-2015-2369

Published: Jul 14, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Untrusted search path vulnerability in Windows Media Device Manager in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rtf file, aka DLL Planting Remote Code Execution Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Windows_2003_serverMicrosoft**
Windows_7Microsoft–sp1 (including)–sp1 (including)
Windows_server_2008Microsoft**
Windows_server_2008Microsoftr2-sp1 (including)r2-sp1 (including)
Windows_vistaMicrosoft**

References