Untrusted Search Path in Epic Games Launcher by Epic Games
CVE-2025-0567
2LOW
What is CVE-2025-0567?
A vulnerability has been identified in the Epic Games Launcher affecting version up to 17.2.1. This issue pertains to the profapi.dll library associated with the Installer component. An attacker with local access may exploit this vulnerability through an untrusted search path, potentially allowing unauthorized actions within the system. However, the process of exploitation is complex and presents significant challenges, making successful attacks less likely.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Launcher 17.2.0
Launcher 17.2.1
References
CVSS V4
Score:
2
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Havook (VulDB User)
