CVE-2010-3146

Microsoft Groove 2007 SP2 - Privilege Escalation

Title source: llm

Description

Multiple untrusted search path vulnerabilities in Microsoft Groove 2007 SP2 allow local users to gain privileges via a Trojan horse (1) mso.dll or (2) GroovePerfmon.dll file in the current working directory, as demonstrated by a directory that contains a Groove vCard (.vcg) or Groove Tool Archive (.gta) file, aka "Microsoft Groove Insecure Library Loading Vulnerability."

Exploits (1)

exploitdb WORKING POC
by Beenu Arora · clocalwindows
https://www.exploit-db.com/exploits/14746

Scores

EPSS 0.2859
EPSS Percentile 96.5%

Details

Status published
Products (1)
microsoft/groove 2007 sp2
Published Aug 27, 2010
Tracked Since Feb 18, 2026