Description
Hubstaff 1.6.14 contains a DLL search order hijacking vulnerability that allows attackers to replace a missing system32 wow64log.dll with a malicious library. Attackers can generate a custom DLL using Metasploit and place it in the system32 directory to obtain a reverse shell during application startup.
Problem types
Uncontrolled Search Path Element
Product status
Credits
Ahsan Azad
References
www.exploit-db.com/exploits/51461 (ExploitDB-51461)
hubstaff.com/ (Official Product Homepage)
www.vulncheck.com/...arch-order-hijacking-via-wowlog-library (VulnCheck Advisory: Hubstaff 1.6.14 DLL Search Order Hijacking via wow64log Library)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.