First published: Fri Sep 15 2017(Updated: )
Untrusted search path vulnerability in FENCE-Explorer for Windows V8.4.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Fujitsu Fence-explorer | <=8.4.1 | |
Microsoft Windows 10 | ||
Microsoft Windows 7 | ||
Microsoft Windows 8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-10855 has a moderate severity rating, allowing privilege escalation through a Trojan horse DLL.
To fix CVE-2017-10855, update FENCE-Explorer to version 8.4.2 or later to mitigate the untrusted search path vulnerability.
CVE-2017-10855 affects FENCE-Explorer for Windows versions 8.4.1 and earlier.
CVE-2017-10855 typically requires local access for exploitation, as it relies on placing a malicious DLL.
No, the vulnerability is specific to FENCE-Explorer, not directly related to the Windows operating system versions.