CVE-2014-8395: Medium severity corel painter vulnerability
Published Jan 15, 2015
·Updated
Untrusted search path vulnerability in Corel Painter 2015 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wacommt.dll file that is located in the same folder as the file being processed.
Affected Software
1 affected component
Corel Painter=2015
Event History
Jan 15, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8395?
CVE-2014-8395 is classified as a high severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2014-8395?
To mitigate CVE-2014-8395, avoid placing untrusted DLL files in the same directory as Corel Painter 2015.
3
What types of attacks can CVE-2014-8395 facilitate?
CVE-2014-8395 can facilitate DLL hijacking attacks, allowing local users to execute arbitrary code.
4
Who is affected by CVE-2014-8395?
Users of Corel Painter 2015 can be affected by CVE-2014-8395 if they unknowingly use trojanized DLL files.
5
When was CVE-2014-8395 reported?
CVE-2014-8395 was reported in January 2015.