CVE-2010-3148
Untrusted search path vulnerability in Microsoft Visio 2003 SP3 allows local users to gain privileges via a Trojan horse mfc71enu.dll file in the current working directory, as demonstrated by a directory that contains a .vsd, .vdx, .vst, or .vtx file, aka "Microsoft Visio Insecure Library Loading Vulnerability."
- Affected products
- Office Visio
- Microsoft Visio
- = 2003
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 13.6% (96th percentile)
- NVD status
- Modified
- Published
- 2010-08-27
CVE-2010-3148 at NVD
2 known exploits for CVE-2010-3148
Proof-of-concept code and exploit modules indexed by Sploitus