CVE-2015-8264: High severity f-secure online scanner vulnerability
Published Aug 2, 2017
·Updated
Untrusted search path vulnerability in F-Secure Online Scanner allows remote attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse DLL that is located in the same folder as F-SecureOnlineScanner.exe.
Affected Software
1 affected component
F-Secure F-Secure Online Scanner
Event History
Aug 2, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-8264?
CVE-2015-8264 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2015-8264?
To fix CVE-2015-8264, ensure that your F-Secure Online Scanner is updated to the latest version to mitigate the vulnerability.
3
What type of attacks can CVE-2015-8264 enable?
CVE-2015-8264 can enable DLL hijacking attacks, allowing attackers to execute arbitrary code.
4
Which software is affected by CVE-2015-8264?
CVE-2015-8264 affects F-Secure Online Scanner software.
5
Can CVE-2015-8264 be exploited remotely?
Yes, CVE-2015-8264 can be exploited remotely by attackers using a specially crafted Trojan horse DLL.