Untrusted Search Path Vulnerability in SKYSEA Client View Installer
CVE-2021-20616
7.8HIGH
What is CVE-2021-20616?
An untrusted search path vulnerability exists in the installer of SKYSEA Client View, impacting versions from Ver.1.020.05b to Ver.16.001.01g. This flaw could allow a malicious actor to execute arbitrary code and gain elevated privileges by placing a Trojan horse dynamic link library (DLL) in a designated, but untrusted, directory during the installation process. Users are strongly advised to update their installations to mitigate potential exploitation.
Affected Version(s)
SKYSEA Client View Ver.1.020.05b to Ver.16.001.01g
