Untrusted search path vulnerability in KeePass Password Safe before 1.18 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .kdb file. NOTE: some of these details are obtained from third party information.
Link | Tags |
---|---|
http://secunia.com/advisories/41270 | third party advisory vendor advisory |
http://keepass.info/news/n100902_1.18.html | patch |