CVE-2014-8394: Medium severity corelcad vulnerability
Multiple untrusted search path vulnerabilities in Corel CAD 2014 allow local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) FxManagedCommands3.089.tx or (2) TDMgd3.089.dll file in the current working directory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-8394?
CVE-2014-8394 is considered a critical vulnerability due to its potential to allow arbitrary code execution.
How does CVE-2014-8394 allow DLL hijacking?
CVE-2014-8394 allows DLL hijacking by manipulating untrusted search paths that lead to the execution of malicious DLL files.
What files are involved in CVE-2014-8394?
The files involved in CVE-2014-8394 are FxManagedCommands_3.08_9.tx and TD_Mgd_3.08_9.dll.
Who is affected by CVE-2014-8394?
Local users of Corel CAD 2014 are affected by CVE-2014-8394.
What are the recommended mitigations for CVE-2014-8394?
To mitigate CVE-2014-8394, ensure that you do not run Corel CAD 2014 in environments where untrusted files can be executed.