CVE-2010-3133
CVE-2010-3133
Untrusted search path vulnerability in Wireshark 0.8.4 through 1.0.15 and 1.2.0 through 1.2.10 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse airpcap.dll, and possibly other DLLs, that is located in the same folder as a file that automatically launches Wireshark.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/14721/unverifiedexploitdbwww.exploit-db.com/exploits/14721unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://secunia.com/advisories/41064https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11498http://www.exploit-db.com/exploits/14721/http://www.vupen.com/english/advisories/2010/2165http://www.vupen.com/english/advisories/2010/2243http://www.wireshark.org/security/wnpa-sec-2010-09.htmlhttp://www.wireshark.org/security/wnpa-sec-2010-10.html