CVE-2010-3145
Untrusted search path vulnerability in the BitLocker Drive Encryption API, as used in sdclt.exe in Backup Manager in Microsoft Windows Vista SP1 and SP2, allows local users to gain privileges via a Trojan horse fveapi.dll file in the current working…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.9%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Untrusted search path vulnerability in the BitLocker Drive Encryption API, as used in sdclt.exe in Backup Manager in Microsoft Windows Vista SP1 and SP2, allows local users to gain privileges via a Trojan horse fveapi.dll file in the current working directory, as demonstrated by a directory that contains a Windows Backup Catalog (.wbcat) file, aka "Backup Manager Insecure Library Loading Vulnerability."
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 10.94% probability · 96th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/windows vista
- Source
- cve@mitre.org
References
- http://www.exploit-db.com/exploits/14751/Exploit
- http://www.securitytracker.com/id?1024948
- http://www.us-cert.gov/cas/techalerts/TA11-011A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2011/0074Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-001
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12273
- http://www.exploit-db.com/exploits/14751/Exploit
- http://www.securitytracker.com/id?1024948
- http://www.us-cert.gov/cas/techalerts/TA11-011A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2011/0074Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-001
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12273
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.