Untrusted search path vulnerability in the BitLocker Drive Encryption API, as used in sdclt.exe in Backup Manager in Microsoft Windows Vista SP1 and SP2, allows local users to gain privileges via a Trojan horse fveapi.dll file in the current working directory, as demonstrated by a directory that contains a Windows Backup Catalog (.wbcat) file, aka "Backup Manager Insecure Library Loading Vulnerability."
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:18
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.exploit-db.com/exploits/14751/ - Exploit | |
References | () http://www.securitytracker.com/id?1024948 - | |
References | () http://www.us-cert.gov/cas/techalerts/TA11-011A.html - US Government Resource | |
References | () http://www.vupen.com/english/advisories/2011/0074 - Vendor Advisory | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-001 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12273 - |
07 Dec 2023, 18:38
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:microsoft:windows_vista:*:sp1:x64:*:*:*:*:* |
Information
Published : 2010-08-27 19:00
Updated : 2024-11-21 01:18
NVD link : CVE-2010-3145
Mitre link : CVE-2010-3145
CVE.ORG link : CVE-2010-3145
JSON object : View
Products Affected
microsoft
- windows_vista
CWE