CVE-2014-0619
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/10/2014
Last modified:
12/04/2025
Description
Untrusted search path vulnerability in Hamster Free ZIP Archiver 2.0.1.7 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the current working directory.
Impact
Base Score 2.0
6.90
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:hamstersoft:hamster_free_zip_archiver:2.0.1.7:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://packetstormsecurity.com/files/128739/Hamster-Free-ZIP-Archiver-2.0.1.7-DLL-Hijacking.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/97658
- http://packetstormsecurity.com/files/128739/Hamster-Free-ZIP-Archiver-2.0.1.7-DLL-Hijacking.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/97658