Vulnerability Details CVE-2008-2147
Untrusted search path vulnerability in VideoLAN VLC before 0.9.0 allows local users to execute arbitrary code via a malicious library under the modules/ or plugins/ subdirectories of the current working directory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 49.3%
CVSS Severity
CVSS v2 Score 4.6
Products affected by CVE-2008-2147
-
-
cpe:2.3:a:videolan:vlc:0.4.6
-
cpe:2.3:a:videolan:vlc:0.5.0
-
cpe:2.3:a:videolan:vlc:0.5.1
-
cpe:2.3:a:videolan:vlc:0.5.1a
-
cpe:2.3:a:videolan:vlc:0.5.2
-
cpe:2.3:a:videolan:vlc:0.5.3
-
cpe:2.3:a:videolan:vlc:0.6.0
-
cpe:2.3:a:videolan:vlc:0.6.1
-
cpe:2.3:a:videolan:vlc:0.6.2
-
cpe:2.3:a:videolan:vlc:0.7.0
-
cpe:2.3:a:videolan:vlc:0.7.1
-
cpe:2.3:a:videolan:vlc:0.7.2
-
cpe:2.3:a:videolan:vlc:0.8.0
-
cpe:2.3:a:videolan:vlc:0.8.1
-
cpe:2.3:a:videolan:vlc:0.8.2
-
cpe:2.3:a:videolan:vlc:0.8.4
-
cpe:2.3:a:videolan:vlc:0.8.4a
-
cpe:2.3:a:videolan:vlc:0.8.5
-
cpe:2.3:a:videolan:vlc:0.8.6a
-
cpe:2.3:a:videolan:vlc:0.8.6b
-
cpe:2.3:a:videolan:vlc:0.8.6c
-
cpe:2.3:a:videolan:vlc:0.8.6d
-
cpe:2.3:a:videolan:vlc:0.8.6e