| ଶୀର୍ଷକ | PeaZip PeaZip 9.4.0.0 DLL Hijacking |
|---|
| ବର୍ଣ୍ଣନା | # Exploit Title: - DLL Hijacking
# Date: 17/11/2023
# Exploit Author: Jozic Espinoza
# Vendor Homepage: https://peazip.github.io
# Version: x.x.x.x
# Tested on: Windows
A DLL hijacking vulnerability has been discovered in PeaZip Version x.x.x.x
When a user open the peazip.exe file, the
application will load the following DLL from the same directory:
dragdropfilesdll.dll
Using a crafted DLL, it is possible to execute arbitrary code in the
context of the current logged in user. |
|---|
| ଉପଭୋକ୍ତା | tfhm (UID 58605) |
|---|
| ଦାଖଲ | 11/18/2023 05:30 AM (2 ବର୍ଷ ବର୍ଷ ago) |
|---|
| ମଧ୍ୟମ ଧରଣର | 12/16/2023 01:51 PM (28 days later) |
|---|
| ସ୍ଥିତି | ଗ୍ରହଣ କରାଯାଇଛି |
|---|
| VulDB ଏଣ୍ଟ୍ରି | 248251 [PeaZip 9.4.0 Library dragdropfilesdll.dll ବିସ୍ତାରିତ ଅଧିକାର] |
|---|
| ପଏଣ୍ଟ | 17 |
|---|