Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with same name and can get admin privileges.
The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
Link | Tags |
---|---|
http://outbyte.com | vendor advisory |
https://github.com/SaumyajeetDas/POC-of-CVE-2022-36271 | third party advisory exploit |