DLL Hijacking Vulnerability in Sandboxie Installer by Sandboxie, LLC
CVE-2017-12480
7.8HIGH
What is CVE-2017-12480?
The Sandboxie installer version 5071703 is susceptible to a DLL hijacking vulnerability, which arises from the unsafe loading of DLL files such as dwmapi.dll or profapi.dll. This vulnerability can occur when a malicious actor places a Trojan horse version of these DLL files in the AppData\Local\Temp directory. If the application is manipulated into loading the malicious DLL, it can lead to unauthorized execution of code, potentially compromising system integrity and allowing control over the affected system.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
