Vulnerability Name: | CVE-2010-3145 (CCN-63788) | ||||||||
Assigned: | 2010-08-23 | ||||||||
Published: | 2010-08-23 | ||||||||
Updated: | 2018-10-12 | ||||||||
Summary: | Untrusted search path vulnerability in the BitLocker Drive Encryption API, as used in sdclt.exe in Backup Manager in Microsoft Windows Vista SP1 and SP2, allows local users to gain privileges via a Trojan horse fveapi.dll file in the current working directory, as demonstrated by a directory that contains a Windows Backup Catalog (.wbcat) file, aka "Backup Manager Insecure Library Loading Vulnerability." | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 7.3 High (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
7.3 High (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2010-3145 Source: CCN Type: SA41122 Microsoft Windows Backup Insecure Library Loading Vulnerability Source: CCN Type: SECTRACK ID: 1024948 Windows Backup Manager May Load DLLs Unsafely and Remotely Execute Arbitrary Code Source: EXPLOIT-DB Type: Exploit 14751 Source: CCN Type: IBM Security Protection Alert Microsoft Windows Backup Manager Could Allow Remote Code Execution Source: CCN Type: Microsoft Security Advisory (2269637) Insecure Library Loading Could Allow Remote Code Execution Source: CCN Type: Microsoft Security Bulletin MS11-001 Vulnerability in Windows Backup Manager Could Allow Remote Code Execution (2478935) Source: CCN Type: OSVDB ID: 67584 Microsoft Windows Vista Backup Path Subversion Arbitrary DLL Injection Code Execution Source: CCN Type: BID-42763 Microsoft Windows Backup 'fveapi.dll' DLL Loading Arbitrary Code Execution Vulnerability Source: SECTRACK Type: UNKNOWN 1024948 Source: CERT Type: US Government Resource TA11-011A Source: VUPEN Type: Vendor Advisory ADV-2011-0074 Source: MS Type: UNKNOWN MS11-001 Source: XF Type: UNKNOWN microsoftwindowsbackup-dll-ce(63788) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:12273 Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database Source: EXPLOIT-DB Type: EXPLOIT EDB-ID: 14751 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |