GalaxyClient version 2.0.28.9 loads unsigned DLLs such as zlib1.dll, libgcc_s_dw2-1.dll and libwinpthread-1.dll from PATH, which allows an attacker to potentially run code locally through unsigned DLL loading.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-04-30T10:53:04
Updated: 2024-08-03T20:33:40.972Z
Reserved: 2021-02-05T00:00:00
Link: CVE-2021-26807
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-04-30T11:15:07.410
Modified: 2024-11-21T05:56:50.740
Link: CVE-2021-26807
Redhat
No data.