Security Advisory

CVE-2011-5158

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-09-07 10:00:00
Last updated 2024-09-16 18:56:21
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multiple untrusted search path vulnerabilities in the DMTGUI2.EXE and DvInesLogFileViewer.Exe components in DATEV Grundpaket Basis CD23.20 allow local users to gain privileges via a Trojan horse (1) DVBSKNLANG101.dll or (2) DvZediTermSrvInfo004.dll file in the current working directory, as demonstrated by a directory that contains a .dmt, .adl, .c02, .dof, or .jrf file. NOTE: some of these details are obtained from third party information.