Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-38633: Vulnerability/GenymotionDesktop.md at main · SaumyajeetDas/Vulnerability

Genymotion Desktop v3.2.1 was discovered to contain a DLL hijacking vulnerability which allows attackers to escalate privileges and execute arbitrary code via a crafted binary.

CVE
#vulnerability#mac

Permalink

The name of an affected Product : Genymotion Desktop****Affected Version : 3.2.1****Vulnerability Type : DLL Hijacking****Description : profapi.dll is missing so an attacker can use a malicious dll with same name and can get a admin privileges and also perform a way of persistence on the victim machine.****Impact : An attacker could exploit this vulnerability by placing a malicious DLL file on the targeted system. This file will execute when the vulnerable application launches. A successful exploit could allow the attacker to execute arbitrary code on the targeted system with SYSTEM PRIVILEGES as well the attacker can maintain persistence on the target system.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda