PoC Index

CVE-2010-3142

HIGH 9.3EPSS 16.3%

Untrusted search path vulnerability in Microsoft Office PowerPoint 2007 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse rpawinet.dll that is located in the same folder as a .odp, .pothtml, .potm, .potx, .ppa, .ppam, .pps, .ppt, .ppthtml, .pptm, .pptxml, .pwz, .sldm, .sldx, and .thmx file.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
16.31% chance of exploitation in the next 30 days, 97th percentile
Published
2010-08-27
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (2)

References

Related