Exploitation Summary
EIP tracks 1 public exploit for CVE-2011-5155. PoCs published by LiquidWorm.
AI-analyzed exploit summary This exploit demonstrates a DLL hijacking vulnerability in EC Software Help & Manual 5.5.1 Build 1296. The PoC involves placing a malicious DLL (ijl15.dll) in a network share, which gets executed when the application loads a file with specific extensions.
Description
Untrusted search path vulnerability in Help & Manual 5.5.1 Build 1296 allows local users to gain privileges via a Trojan horse ijl15.dll file in the current working directory, as demonstrated by a directory that contains a .hmxz, .hmxp, .hmskin, .hmx, .hm3, .hpj, .hlp, or .chm file. NOTE: some of these details are obtained from third party information.
Exploits (1)
This exploit demonstrates a DLL hijacking vulnerability in EC Software Help & Manual 5.5.1 Build 1296. The PoC involves placing a malicious DLL (ijl15.dll) in a network share, which gets executed when the application loads a file with specific extensions.