Untrusted search path vulnerability in ELECOM Camera Assistant 1.00 and QuickFileDealer Ver.1.2.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
The product searches for critical resources using an externally-supplied search path that can point to resources that are not under the product's direct control.
Link | Tags |
---|---|
https://www.elecom.co.jp/news/security/20230214-01/ | patch vendor advisory |
https://jvn.jp/en/jp/JVN60263237/ | third party advisory |