CVE-2023-49114

Published Feb 26, 2024

Last updated 19 days ago

Overview

Description
A DLL hijacking vulnerability was identified in the Qognify VMS Client Viewer version 7.1 or higher, which allows local users to execute arbitrary code and obtain higher privileges via careful placement of a malicious DLL, if some specific pre-conditions are met.
Source
551230f0-3615-47bd-b7cc-93e92e730bbf
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Secondary
Base score
6.7
Impact score
5.9
Exploitability score
0.8
Vector string
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Severity
MEDIUM

Weaknesses

551230f0-3615-47bd-b7cc-93e92e730bbf
CWE-427
nvd@nist.gov
CWE-427

Social media

Hype score
Not currently trending

Configurations