VYPR
Medium severity6.5NVD Advisory· Published Nov 30, 2023· Updated Jun 17, 2026

CVE-2023-4770

CVE-2023-4770

Description

An uncontrolled search path element vulnerability has been found on 4D and 4D server Windows executables applications, affecting version 19 R8 100218. This vulnerability consists in a DLL hijacking by replacing x64 shfolder.dll in the installation path, causing an arbitrary code execution.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • 4D/4D Server.exev5
    Range: 19 R8 100218
  • 4D/4D.exev5
    Range: 19 R8 100218

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.