DLL Hijacking Vulnerability in Yandex Telemost for Desktop
CVE-2024-12168
8.4HIGH
What is CVE-2024-12168?
A vulnerability exists in Yandex Telemost for Desktop prior to version 2.7.0, allowing potential attackers to exploit an untrusted search path for dynamic link libraries (DLLs). This deficiency can permit malicious DLLs to be loaded, which may lead to arbitrary code execution or system compromise. It is crucial for users of affected versions to update their software to safeguard against such risks.
Affected Version(s)
Telemost Windows 0 < 2.7.0