Microsoft Windows Iexpress是美国微软(Microsoft)公司的一款捆绑在Windows系统中的用于压缩CAB文件的工具。 Microsoft Windows Iexpress中所创建的自我提取归档文件存在不可信的搜索路径漏洞。攻击者可借助目录下恶意的DLL利用该漏洞以调用自我提取归档文件用户的权限执行代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft | Self-extracting archive files created by IExpress bundled with Microsoft Windows | unspecified | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-0592 | Microsoft OneDrive 安全漏洞 | |
| CVE-2018-0593 | Microsoft OneDrive installer 安全漏洞 | |
| CVE-2018-0594 | Microsoft Skype for Windows 安全漏洞 | |
| CVE-2018-0595 | Microsoft Skype for Windows installer 安全漏洞 | |
| CVE-2018-0596 | Microsoft Visual Studio Community installer 安全漏洞 | |
| CVE-2018-0597 | Microsoft Visual Studio Code installer 安全漏洞 | |
| CVE-2018-0599 | Microsoft Visual C++ Redistributable installer 安全漏洞 |
No comments yet