CVE-2010-3148: Critical severity Microsoft Visio vulnerability
Untrusted search path vulnerability in Microsoft Visio 2003 SP3 allows local users to gain privileges via a Trojan horse mfc71enu.dll file in the current working directory, as demonstrated by a directory that contains a .vsd, .vdx, .vst, or .vtx file, aka "Microsoft Visio Insecure Library Loading Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3148?
CVE-2010-3148 is considered a high severity vulnerability as it allows local users to gain elevated privileges.
How do I fix CVE-2010-3148?
To fix CVE-2010-3148, it is advised to avoid using Microsoft Visio 2003 or to ensure that no untrusted DLLs are placed in the working directory.
Who is affected by CVE-2010-3148?
CVE-2010-3148 affects local users of Microsoft Visio 2003 SP3 on Windows systems.
What type of vulnerability is CVE-2010-3148?
CVE-2010-3148 is an untrusted search path vulnerability that allows the execution of malicious DLLs.
Can CVE-2010-3148 be exploited remotely?
CVE-2010-3148 cannot be exploited remotely as it requires local access to the affected system.