CVE-2018-18364

Severity CVSS v4.0:
Pending analysis
Type:
CWE-426 Untrusted Search Path
Publication date:
08/02/2019
Last modified:
13/02/2019

Description

Symantec Ghost Solution Suite (GSS) versions prior to 3.3 RU1 may be susceptible to a DLL hijacking vulnerability, which is a type of issue whereby a potential attacker attempts to execute unexpected code on your machine. This occurs via placement of a potentially foreign file (DLL) that the attacker then attempts to run via a linked application.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:symantec:ghost_solution_suite:2.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:2.5:*:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.0:*:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.0:hf1:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.0:hf2:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.0:hf3:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.0:hf4:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.0:hf5:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:*:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:mp1:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:mp2:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:mp3:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:mp4:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:mp5:*:*:*:*:*:*
cpe:2.3:a:symantec:ghost_solution_suite:3.1:mp6:*:*:*:*:*:*