CVE-2020-9418

HIGH

PDFescape < 4.0.22 - Untrusted Search Path via DLL Hijacking

Title source: llm
STIX 2.1

Description

An untrusted search path vulnerability in the installer of PDFescape Desktop version 4.0.22 and earlier allows an attacker to gain privileges and execute code via DLL hijacking.

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0043
EPSS Percentile 34.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-426
Status published
Products (1)
redsoftware/pdfescape < 4.0.22
Published Mar 05, 2020
Tracked Since Feb 18, 2026