CVE-2022-36415

HIGH

Scooter Beyond Compare <4.4.3 - Code Injection

Title source: llm

Description

A DLL hijacking vulnerability exists in the uninstaller in Scooter Beyond Compare 1.8a through 4.4.2 before 4.4.3 when installed via the EXE installer. The uninstaller attempts to load DLLs out of a Windows Temp folder. If a standard user places malicious DLLs in the C:\Windows\Temp\ folder, and then the uninstaller is run as SYSTEM, the DLLs will execute with elevated privileges.

Scores

CVSS v3 7.8
EPSS 0.0006
EPSS Percentile 17.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

scootersoftware/beyond_compare < 4.4.3

Timeline

Published Jul 23, 2022
Tracked Since Feb 18, 2026