CVE-2014-9416: Medium severity huawei espace desktop vulnerability
Multiple untrusted search path vulnerabilities in Huawei eSpace Desktop before V200R003C00 allow local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) mfc71enu.dll, (2) mfc71loc.dll, (3) tcapi.dll, or (4) airpcap.dll.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9416?
CVE-2014-9416 is considered a moderate severity vulnerability due to its potential for local code execution.
How do I fix CVE-2014-9416?
To mitigate CVE-2014-9416, users should update Huawei eSpace Desktop to a version later than V200R003C00.
What types of attacks can CVE-2014-9416 facilitate?
CVE-2014-9416 can facilitate DLL hijacking attacks, allowing an attacker to execute arbitrary code.
Which versions of Huawei eSpace Desktop are affected by CVE-2014-9416?
CVE-2014-9416 affects all versions of Huawei eSpace Desktop up to and including V200R003C00.
What files are involved in the CVE-2014-9416 vulnerabilities?
The vulnerable files in CVE-2014-9416 include mfc71enu.dll, mfc71loc.dll, tcapi.dll, and airpcap.dll.