Lucene search

K
cvelistTalosCVELIST:CVE-2017-2802
HistoryApr 24, 2018 - 7:00 p.m.

CVE-2017-2802

2018-04-2419:00:00
talos
www.cve.org
2

EPSS

0.001

Percentile

44.6%

An exploitable dll hijacking vulnerability exists in the poaService.exe service component of the Dell Precision Optimizer software version 3.5.5.0. A specifically named malicious dll file located in one of directories pointed to by the PATH environment variable will lead to privilege escalation. An attacker with local access to vulnerable system can exploit this vulnerability.

CNA Affected

[
  {
    "product": "Dell",
    "vendor": "dell",
    "versions": [
      {
        "status": "affected",
        "version": "Precision Tower 5810 with nvidia graphic cards. PPO Policy Processing Engine - FileVersion : 3.5.5.0 ati.dll ( PPO Monitoring Plugin ) - FileVersion : 3.5.5.0"
      }
    ]
  }
]

EPSS

0.001

Percentile

44.6%

Related for CVELIST:CVE-2017-2802