CVE-2021-38469

Many of the services used by the affected product do not specify full paths for the DLLs they are loading. An attacker can exploit the uncontrolled search path by implanting their own DLL near the affected product’s binaries, thus hijacking the loaded DLL.
References
Link Resource
https://us-cert.cisa.gov/ics/advisories/icsa-21-292-01 Patch Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:auvesy:versiondog:*:*:*:*:*:*:*:*

Information

Published : 2021-10-22 12:15

Updated : 2021-10-28 06:52


NVD link : CVE-2021-38469

Mitre link : CVE-2021-38469

Products Affected
No products.
CWE