Kaizen Asset Manager (Enterprise Edition) and Training Manager (Enterprise Edition) allow a remote attacker to achieve arbitrary code execution via file impersonation. For example, a malicious dynamic-link library (dll) assumed the identity of a temporary (tmp) file (isxdl.dll) and an executable file assumed the identity of a temporary file (996E.temp).
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-09-05T19:00:00Z
Updated: 2024-09-17T00:56:35.188Z
Reserved: 2018-09-05T00:00:00Z
Link: CVE-2018-16545
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2018-09-05T19:29:00.983
Modified: 2019-10-03T00:03:26.223
Link: CVE-2018-16545
Redhat
No data.