Headline
CVE-2022-38633: Vulnerability/GenymotionDesktop.md at main · SaumyajeetDas/Vulnerability
Genymotion Desktop v3.2.1 was discovered to contain a DLL hijacking vulnerability which allows attackers to escalate privileges and execute arbitrary code via a crafted binary.
Permalink
The name of an affected Product : Genymotion Desktop****Affected Version : 3.2.1****Vulnerability Type : DLL Hijacking****Description : profapi.dll is missing so an attacker can use a malicious dll with same name and can get a admin privileges and also perform a way of persistence on the victim machine.****Impact : An attacker could exploit this vulnerability by placing a malicious DLL file on the targeted system. This file will execute when the vulnerable application launches. A successful exploit could allow the attacker to execute arbitrary code on the targeted system with SYSTEM PRIVILEGES as well the attacker can maintain persistence on the target system.