CVE-2010-5245
Last modified
CVE-2010-5245 is a vulnerability of currently unknown severity. Untrusted search path vulnerability in PDF-XChange Viewer 2.0 Build 54.0 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .pdf file. NOTE: some of these details are obtained from third party information.. EPSS estimates a 0.40% chance of exploitation in the next 30 days.
Description
Untrusted search path vulnerability in PDF-XChange Viewer 2.0 Build 54.0 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .pdf file. NOTE: some of these details are obtained from third party information.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Tracker-Software | Pdf-Xchange Viewer | 2.0.54.0 |
References
- http://secunia.com/advisories/41197Permissions Required, Vendor Advisory
- http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/Broken Link, Third Party Advisory
- http://secunia.com/advisories/41197Permissions Required, Vendor Advisory
- http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/Broken Link, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2010-5245?
How severe is CVE-2010-5245?
How do I fix CVE-2010-5245?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2010
- CVE-2010-5239Untrusted search path vulnerability in DAEMON Tools Lite 4.3…
- CVE-2010-5240Multiple untrusted search path vulnerabilities in Corel PHOT…
- CVE-2010-5241Multiple untrusted search path vulnerabilities in Autodesk A…
- CVE-2010-5242Untrusted search path vulnerability in Sound Forge Pro 10.0b…
- CVE-2010-5243Multiple untrusted search path vulnerabilities in Cyberlink …
- CVE-2010-5244Untrusted search path vulnerability in SiSoftware Sandra 201…
- CVE-2010-5246Multiple untrusted search path vulnerabilities in Maxthon Br…
- CVE-2010-5247Untrusted search path vulnerability in QtWeb Browser 3.3 bui…
- CVE-2010-5248Untrusted search path vulnerability in UltraVNC 1.0.8.2 allo…
- CVE-2010-5249Untrusted search path vulnerability in Sophos Free Encryptio…
- CVE-2010-5250Untrusted search path vulnerability in the pthread_win32_pro…
- CVE-2010-5251Multiple untrusted search path vulnerabilities in IBM Lotus …
Are you affected by CVE-2010-5245?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
