Beveiligingsadvies

CVE-2025-10213

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-09-10 11:38:37
Laatst bijgewerkt 2025-09-10 20:23:13
Toegewezen door INCIBE
CVSS-score 7.0
Status PUBLISHED

Beschrijving

DLL search path hijacking vulnerability in the UPDF.exe executable for Windows version 1.8.5.0 allows attackers with local access to execute arbitrary code by placing a dxtn.dll file of their choice in the 'C:\Users\<user>\AppData\Local\Microsoft\WindowsApps\' directory, which could lead to arbitrary code execution and persistence.