CVE-2019-5245: Medium severity huawei hisuite vulnerability
Published Jun 13, 2019
·Updated
HiSuite 9.1.0.300 versions and earlier contains a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is loaded by HiSuite improperly. And it allows an attacker to load this DLL file of the attacker's choosing that could execute arbitrary code.
Affected Software
1 affected component
Huawei HiSuite<=9.1.0.300
Event History
Jun 13, 2019
CVE Published
via MITRE·03:41 PM
Data Sourced
via MITRE·03:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-5245?
CVE-2019-5245 is a DLL hijacking vulnerability in HiSuite 9.1.0.300 and earlier versions.
2
What is the severity of CVE-2019-5245?
The severity of CVE-2019-5245 is medium with a CVSS score of 5.3.
3
How does the DLL hijacking vulnerability in HiSuite work?
The DLL hijacking vulnerability in HiSuite allows an attacker to load a DLL file of their choosing that could execute arbitrary code.
4
Which versions of HiSuite are affected by CVE-2019-5245?
HiSuite 9.1.0.300 versions and earlier are affected by CVE-2019-5245.
5
How can I fix the DLL hijacking vulnerability in HiSuite?
To fix the DLL hijacking vulnerability in HiSuite, it is recommended to update to a version higher than 9.1.0.300.