Lucene search

K
cveMitreCVE-2010-5247
HistorySep 07, 2012 - 10:32 a.m.

CVE-2010-5247

2012-09-0710:32:21
mitre
web.nvd.nist.gov
21
cve-2010-5247
untrusted search path vulnerability
qtweb browser
local privilege escalation
nvd

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

High

EPSS

0

Percentile

5.1%

Untrusted search path vulnerability in QtWeb Browser 3.3 build 043 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .html, .htm, or .mhtml file. NOTE: some of these details are obtained from third party information.

Affected configurations

Nvd
Node
qtwebqtwebMatch3.3
VendorProductVersionCPE
qtwebqtweb3.3cpe:2.3:a:qtweb:qtweb:3.3:*:*:*:*:*:*:*

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.7

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVE-2010-5247