High severity7.8NVD Advisory· Published Mar 12, 2021· Updated Jun 17, 2026
CVE-2021-20674
CVE-2021-20674
Description
Untrusted search path vulnerability in Installer of MagicConnect Client program distributed before 2021 March 1 allows an attacker to gain privileges and via a Trojan horse DLL in an unspecified directory and to execute arbitrary code with the privilege of the user invoking the installer when a terminal is connected remotely using Remote desktop.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: < 2021 March 1
- Range: distributed before 2021 March 1
Patches
Vulnerability mechanics
References
2- jvn.jp/en/jp/JVN18056666/index.htmlnvdThird Party Advisory
- www.magicconnect.net/information/202103110900-2nvdVendor Advisory
News mentions
0No linked articles in our index yet.