VulnerabilityModified
CVE-2012-3004
Multiple untrusted search path vulnerabilities in RealFlex RealWin before 2.1.13, FlexView before 3.1.86, and RealWinDemo before 2.1.13 allow local users to gain privileges via a Trojan horse (1) realwin.dll or (2) keyhook.dll file in the current…
MEDIUM 6.9EPSS 0.45%
Does this matter?
Lower severity and a low EPSS score (0.45%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple untrusted search path vulnerabilities in RealFlex RealWin before 2.1.13, FlexView before 3.1.86, and RealWinDemo before 2.1.13 allow local users to gain privileges via a Trojan horse (1) realwin.dll or (2) keyhook.dll file in the current working directory.
- CVSS 2.0
- 6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 0.45% probability · 38th percentile
- CISA KEV
- Not listed
- Affected
- realflex/realwin · realflex/flexview · realflex/realwindemo
- Source
- ics-cert@hq.dhs.gov
References
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-251-01.pdfUS Government Resource
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-251-01.pdfUS Government Resource
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.