CVE-2017-15913

HIGH

Whale - DLL Hijacking via Untrusted Search Path

Title source: llm
STIX 2.1

Description

The Installer in Whale allows DLL hijacking.

References (2)

Core 2
Core References
Issue Tracking x_refsource_confirm
https://bugbounty.whale.naver.com/en/halloffame
Various Sources x_refsource_confirm
https://cve.naver.com/detail/cve-2017-15913.html

Scores

CVSS v3 7.8
EPSS 0.0105
EPSS Percentile 59.6%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-426
Status published
Products (1)
navercorp/whale
Published Jan 08, 2018
Tracked Since Feb 18, 2026