CVE-2020-24158: High severity 360 speed browser vulnerability
Published Sep 3, 2020
·Updated
360 Speed Browser 12.0.1247.0 has a DLL hijacking vulnerability, which can be exploited by attackers to execute malicious code. It is a dual-core browser owned by Beijing Qihoo Technology.
Affected Software
1 affected component
360 Speed Browser=12.0.1247.0
Event History
Sep 3, 2020
CVE Published
via MITRE·04:09 PM
Data Sourced
via MITRE·04:09 PM
Description
Frequently Asked Questions
1
What is CVE-2020-24158?
CVE-2020-24158 is a DLL hijacking vulnerability found in 360 Speed Browser version 12.0.1247.0.
2
How can this vulnerability be exploited?
Attackers can exploit CVE-2020-24158 to execute malicious code on systems running 360 Speed Browser version 12.0.1247.0.
3
What is the severity of CVE-2020-24158?
The severity of CVE-2020-24158 is rated as high with a CVSS score of 7.8.
4
How do I know if I am affected by CVE-2020-24158?
You are affected by CVE-2020-24158 if you are using 360 Speed Browser version 12.0.1247.0.
5
Is there a fix available for CVE-2020-24158?
At the moment, there is no official fix available for CVE-2020-24158. It is recommended to follow the vendor's security advisories for any updates or patches.