Untrusted Search Path Vulnerability in Shinseiyo Sogo Soft Installer
CVE-2017-2232
7.8HIGH
What is CVE-2017-2232?
The Shinseiyo Sogo Soft Installer has a vulnerability that allows an attacker to exploit an untrusted search path. Specifically, this weakness enables malicious users to execute a Trojan horse DLL placed in a directory that the installer accesses, potentially leading to privilege escalation. Users of Shinseiyo Sogo Soft versions up to 4.8A should be aware of this risk and take appropriate measures to secure their systems.
Affected Version(s)
Installer of Shinseiyo Sogo Soft (4.8A) and earlier
