Unrated severityNVD Advisory· Published Mar 12, 2021· Updated Aug 3, 2024
CVE-2021-20674
CVE-2021-20674
Description
Untrusted search path vulnerability in Installer of MagicConnect Client program distributed before 2021 March 1 allows an attacker to gain privileges and via a Trojan horse DLL in an unspecified directory and to execute arbitrary code with the privilege of the user invoking the installer when a terminal is connected remotely using Remote desktop.
Affected products
1- Range: distributed before 2021 March 1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- jvn.jp/en/jp/JVN18056666/index.htmlmitrex_refsource_MISC
- www.magicconnect.net/information/202103110900-2mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.