Vulnerability Details CVE-2021-42110
An issue was discovered in Allegro Windows (formerly Popsy Windows) before 3.3.4156.1. A standard user can escalate privileges to SYSTEM if the FTP module is installed, because of DLL hijacking.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.3%
CVSS Severity
CVSS v3 Score 7.1
CVSS v2 Score 6.2
Products affected by CVE-2021-42110
-
cpe:2.3:a:allegro:allegro:3.2.4035.10
-
cpe:2.3:a:allegro:allegro:3.2.4035.6
-
cpe:2.3:a:allegro:allegro:3.3.4149.0
-
cpe:2.3:a:allegro:allegro:3.3.4150.0
-
cpe:2.3:a:allegro:allegro:3.3.4150.1
-
cpe:2.3:a:allegro:allegro:3.3.4150.2
-
cpe:2.3:a:allegro:allegro:3.3.4151.0
-
cpe:2.3:a:allegro:allegro:3.3.4151.1
-
cpe:2.3:a:allegro:allegro:3.3.4152.0