CVE-2010-3155

Adobe ExtendScript Toolkit (ESTK) CS5 3.5.0.52 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-3155. PoCs published by LiquidWorm.

AI-analyzed exploit summary This exploit leverages DLL hijacking in Adobe ExtendedScript Toolkit CS5 by placing a malicious 'dwmapi.dll' in the same directory as a '.jsx' file. When the application loads, it executes arbitrary code via the hijacked DLL.

Description

Untrusted search path vulnerability in Adobe ExtendScript Toolkit (ESTK) CS5 3.5.0.52 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .jsx file.

Exploits (1)

exploitdb WORKING POC VERIFIED
by LiquidWorm · clocalwindows
https://www.exploit-db.com/exploits/14785

This exploit leverages DLL hijacking in Adobe ExtendedScript Toolkit CS5 by placing a malicious 'dwmapi.dll' in the same directory as a '.jsx' file. When the application loads, it executes arbitrary code via the hijacked DLL.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Adobe ExtendedScript Toolkit CS5 v3.5.0.52
No auth needed
Prerequisites: Access to the target system to place the malicious DLL and a '.jsx' file in the same directory
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/14785/
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/2213

Scores

EPSS 0.1221
EPSS Percentile 95.6%

Details

Status published
Products (1)
adobe/extendedscript_toolkit_cs5 3.5.0.52
Published Aug 27, 2010
Tracked Since Feb 18, 2026