CVE-2010-5236: Medium severity roxio easy media creator vulnerability
Untrusted search path vulnerability in Roxio Easy Media Creator Home 9.0.136 allows local users to gain privileges via a Trojan horse homeutils9.dll file in the current working directory, as demonstrated by a directory that contains a .roxio, .c2d, or .gi file. NOTE: some of these details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5236?
CVE-2010-5236 is classified as a local privilege escalation vulnerability.
How do I fix CVE-2010-5236?
To fix CVE-2010-5236, ensure that the Roxio Easy Media Creator software is updated to the latest version or remove the application.
Who is affected by CVE-2010-5236?
CVE-2010-5236 affects users running Roxio Easy Media Creator version 9.0.136.
What are the exploit conditions for CVE-2010-5236?
CVE-2010-5236 can be exploited if a user can place a malicious homeutils9.dll file in the current working directory.
What type of attack is CVE-2010-5236 associated with?
CVE-2010-5236 is associated with a Trojan horse attack that exploits untrusted search path vulnerabilities.