CVE-2012-4880
medium
CVSS v3
—
CVSS v2
6.9
VIR risk
6.9
Description
Multiple untrusted search path vulnerabilities in DVD Architect Pro 5.2 Build 133 and DVD Architect Studio 5.0 Build 156 allow local users to gain privileges via a Trojan horse (1) enc_mp2v.200 or (2) CFHDDecoder.dll file in the current working directory, as demonstrated by a directory that contains a .dar file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — http://secunia.com/advisories/47282
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| sony | dvd_architect_pro | 5.2 | |
| sony | dvd_architect_studio | 5.0 | |
References
Verify integrity in audit chain (admin only). AS-IS.