CVE-2017-12480

HIGH

Sandboxie Installer 5071703 - Untrusted Search Path via Trojan Horse DLL in Temp Directory

Title source: llm
STIX 2.1

Description

Sandboxie installer 5071703 has a DLL Hijacking or Unsafe DLL Loading Vulnerability via a Trojan horse dwmapi.dll or profapi.dll file in an AppData\Local\Temp directory.

Scores

CVSS v3 7.8
EPSS 0.0099
EPSS Percentile 58.0%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-426
Status published
Products (1)
sandboxie/sandboxie_installer 5071703
Published Aug 06, 2017
Tracked Since Feb 18, 2026