Description
Multiple untrusted search path vulnerabilities in IBM Lotus Symphony 1.3.0 20090908.0900 allow local users to gain privileges via a Trojan horse (1) eclipse_1114.dll or (2) emser645mi.dll file in the current working directory, as demonstrated by a directory that contains a .odm, .odt, .otp, .stc, .stw, .sxg, or .sxw file. NOTE: some of these details are obtained from third party information.
References (2)
Core 2
Core References
Various Sources x_refsource_misc
http://core.yehg.net/lab/pr0js/advisories/dll_hijacking/%5Bibm_lotus_symphony%5D_3-beta-4_insecure_dll_hijacking
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/41400
Scores
EPSS
0.0035
EPSS Percentile
27.3%
Details
Status
published
Products (1)
ibm/lotus_symphony
1.3.0.20090908.0900
Published
Sep 06, 2012
Tracked Since
Feb 18, 2026