← Back

CVE-2015-2369

nvd nist
Published: Jul 14, 2015Modified: May 6, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

Untrusted search path vulnerability in Windows Media Device Manager in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .rtf file, aka "DLL Planting Remote Code Execution Vulnerability."

Affected (5)

4 products
Windows 2003 Server
Windows 7
Windows Server 2008
Windows Vista
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
Microsoft
All versions
Version r2 sp1
All versions

Timeline

No history available yet.