A vulnerability was found in XAMPP 7.1.1-0-VC14. It has been classified as problematic. Affected is an unknown function of the component Installer. The manipulation leads to privilege escalation. It is possible to launch the attack remotely.
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
Link | Tags |
---|---|
https://packetstormsecurity.com/files/142406/xampp-dllhijack.txt | vdb entry exploit mitigation third party advisory |
https://vuldb.com/?id.100950 | third party advisory |