CVE-2025-4532: Shanghai Bairui Information Technology SunloginClient sunlogin_guard.exe uncontrolled search path
A vulnerability classified as critical has been found in Shanghai Bairui Information Technology SunloginClient 15.8.3.19819. This affects an unknown part in the library process.dll of the file sunloginguard.exe. The manipulation leads to uncontrolled search path. Local access is required to approach this attack. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4532?
CVE-2025-4532 is classified as a critical vulnerability.
What is affected by CVE-2025-4532?
CVE-2025-4532 affects the SunloginClient version 15.8.3.19819 from Shanghai Bairui Information Technology.
How does CVE-2025-4532 impact systems?
CVE-2025-4532 can lead to uncontrolled search path manipulation in the library process.dll.
Who is vulnerable to CVE-2025-4532?
Local access is required to exploit CVE-2025-4532.
How do I fix CVE-2025-4532?
To fix CVE-2025-4532, it is recommended to update the SunloginClient software to the latest version.