CVE-2026-25191

HIGH

FinalCode Client - DLL Hijacking

Title source: llm

Description

The installer of FinalCode Client provided by Digital Arts Inc. contains an issue with the DLL search path. If a user is directed to place a malicious DLL file and the installer to the same directory and execute the installer, arbitrary code may be executed with the installer's execution privilege.

Scores

CVSS v3 7.8
EPSS 0.0002
EPSS Percentile 3.8%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status draft

Timeline

Published Feb 26, 2026
Tracked Since Feb 26, 2026