CVE-2024-48091
Severity CVSS v4.0:
Pending analysis
Type:
CWE-427
Uncontrolled Search Path Element
Publication date:
07/02/2025
Last modified:
10/02/2025
Description
Tally Prime Edit Log v2.1 was discovered to contain a DLL hijacking vulnerability via the component TextShaping.dll. This vulnerability allows attackers to execute arbitrary code via a crafted DLL.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH