Home

Description

DLL search path hijacking vulnerability in the UPDF.exe executable for Windows version 1.8.5.0 allows attackers with local access to execute arbitrary code by placing a FREngine.dll file of their choice in the 'C:\Users\Public\AppData\Local\UPDF\FREngine\Bin64\' directory, which could lead to arbitrary code execution and persistence.

PUBLISHED Reserved 2025-09-10 | Published 2025-09-10 | Updated 2025-09-10 | Assigner INCIBE




HIGH: 7.0CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Problem types

CWE-427 Uncontrolled Search Path Element

Product status

Default status
unaffected

1.8.5.0
affected

Credits

Alexander Huaman Jaimes finder

References

www.incibe.es/...notices/aviso/multiple-vulnerabilities-updf

cve.org (CVE-2025-10215)

nvd.nist.gov (CVE-2025-10215)

Download JSON