Vulnerability Details CVE-2014-1680
Untrusted search path vulnerability in Bandisoft Bandizip before 3.10 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.2%
CVSS Severity
CVSS v2 Score 6.9
Products affected by CVE-2014-1680
-
cpe:2.3:a:bandisoft:bandizip:-
-
cpe:2.3:a:bandisoft:bandizip:0.0.1
-
cpe:2.3:a:bandisoft:bandizip:0.2.0
-
cpe:2.3:a:bandisoft:bandizip:1.0
-
cpe:2.3:a:bandisoft:bandizip:1.0.1
-
cpe:2.3:a:bandisoft:bandizip:1.0.2
-
cpe:2.3:a:bandisoft:bandizip:1.0.3
-
cpe:2.3:a:bandisoft:bandizip:1.0.4
-
cpe:2.3:a:bandisoft:bandizip:1.01
-
cpe:2.3:a:bandisoft:bandizip:1.02
-
cpe:2.3:a:bandisoft:bandizip:1.03
-
cpe:2.3:a:bandisoft:bandizip:1.04
-
cpe:2.3:a:bandisoft:bandizip:1.05
-
cpe:2.3:a:bandisoft:bandizip:1.06
-
cpe:2.3:a:bandisoft:bandizip:1.07
-
cpe:2.3:a:bandisoft:bandizip:1.08
-
cpe:2.3:a:bandisoft:bandizip:1.09
-
cpe:2.3:a:bandisoft:bandizip:1.10
-
cpe:2.3:a:bandisoft:bandizip:1.11
-
cpe:2.3:a:bandisoft:bandizip:1.12
-
cpe:2.3:a:bandisoft:bandizip:1.13
-
cpe:2.3:a:bandisoft:bandizip:2.01
-
cpe:2.3:a:bandisoft:bandizip:2.03
-
cpe:2.3:a:bandisoft:bandizip:2.05
-
cpe:2.3:a:bandisoft:bandizip:2.07
-
cpe:2.3:a:bandisoft:bandizip:2.08
-
cpe:2.3:a:bandisoft:bandizip:2.09
-
cpe:2.3:a:bandisoft:bandizip:3.00
-
cpe:2.3:a:bandisoft:bandizip:3.01
-
cpe:2.3:a:bandisoft:bandizip:3.02
-
cpe:2.3:a:bandisoft:bandizip:3.03
-
cpe:2.3:a:bandisoft:bandizip:3.04
-
cpe:2.3:a:bandisoft:bandizip:3.05
-
cpe:2.3:a:bandisoft:bandizip:3.06
-
cpe:2.3:a:bandisoft:bandizip:3.07
-
cpe:2.3:a:bandisoft:bandizip:3.08
-
cpe:2.3:a:bandisoft:bandizip:3.09