Newell Brands 的 DYMO ID 1.5.1.71 版本在解析其插件模块目录时,是基于当前进程的工作目录相对路径进行的。攻击者可以在与恶意模块/DLL 相同的目录中放置一个任务文件(job file),当受害者点击该文件时,会将当前进程的工作目录设置为该任务文件所在的文件夹。从而导致在受害者权限级别下执行任意代码。此问题已在 1.6.0 版本中修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Newell Brands | DYMO ID | 1.5.1.71 ~ 1.6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet