ShowMyPC 3606 on Windows suffers from a DLL hijack vulnerability. If an attacker overwrites the file %temp%\ShowMyPC\-ShowMyPC3606\wodVPN.dll, it will run any malicious code contained in that file. The code will run with normal user privileges unless the user specifically runs ShowMyPC as administrator.
References
Link Resource
http://showmypc.com Product Vendor Advisory
https://f20.be/cves/showmypc-cve-2021-42923 Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-07-17T23:25:15

Updated: 2022-07-17T23:25:15

Reserved: 2021-10-25T00:00:00


Link: CVE-2021-42923

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-07-18T00:15:08.457

Modified: 2022-07-25T19:58:31.737


Link: CVE-2021-42923

JSON object: View

cve-icon Redhat Information

No data.

CWE