A DLL Hijacking vulnerability in Eaton's 9000x Programming and Configuration Software v 2.0.38 and prior allows an attacker to execute arbitrary code by replacing the required DLLs with malicious DLLs when the software try to load vci11un6.DLL and cinpl.DLL.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-27801 A DLL Hijacking vulnerability in Eaton's 9000x Programming and Configuration Software v 2.0.38 and prior allows an attacker to execute arbitrary code by replacing the required DLLs with malicious DLLs when the software try to load vci11un6.DLL and cinpl.DLL.
Fixes

Solution

Update the software to latest version available.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Eaton

Published:

Updated: 2024-09-16T19:10:14.741Z

Reserved: 2020-01-09T00:00:00

Link: CVE-2020-6654

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-09-30T21:15:13.637

Modified: 2024-11-21T05:36:06.250

Link: CVE-2020-6654

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.