DLL Hijacking Vulnerability in Genymotion Desktop by Genymobile
CVE-2022-38633

7.8HIGH

Key Information:

Vendor

Genymobile

Vendor
CVE Published:
13 September 2022

What is CVE-2022-38633?

Genymotion Desktop version 3.2.1 is affected by a vulnerability that enables DLL hijacking. This vulnerability allows attackers to escalate their privileges and execute arbitrary code by providing a crafted binary. When the application loads a malicious DLL, it can lead to unauthorized access and control over the system, posing serious security risks for users. Ensuring the application is updated to the latest version is crucial for mitigating this threat.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.