CVE-2020-35686

Severity CVSS v4.0:
Pending analysis
Type:
CWE-426 Untrusted Search Path
Publication date:
13/01/2021
Last modified:
21/01/2021

Description

The SECOMN service in Sound Research DCHU model software component modules (APO) through 2.0.9.17, delivered on HP Windows 10 computers, may allow escalation of privilege via a fake DLL. (As a resolution, Windows Update is being submitted for all affected products to update to 2.0.9.18 or later.)

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:soundresearch:dchu_model_software_component_modules:*:*:*:*:*:*:*:* 2.0.9.17 (including)