CVE-2010-5200: Medium severity keepass vulnerability
Untrusted search path vulnerability in KeePass Password Safe before 1.18 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .kdb file. NOTE: some of these details are obtained from third party information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5200?
CVE-2010-5200 has a moderate severity rating due to the potential for local privilege escalation through the exploitation of an untrusted search path.
How do I fix CVE-2010-5200?
To fix CVE-2010-5200, upgrade KeePass Password Safe to version 1.18 or later.
Who is affected by CVE-2010-5200?
Local users of KeePass Password Safe versions prior to 1.18 are affected by CVE-2010-5200.
What type of vulnerability is CVE-2010-5200?
CVE-2010-5200 is an untrusted search path vulnerability that allows local privilege escalation.
Can CVE-2010-5200 be exploited remotely?
No, CVE-2010-5200 can only be exploited locally by an attacker with access to the same system.