Huawei eSpace 1.1.11.103 DLL Hijacking
Posted by deepcore on May 21, 2019 – 8:10 am
Huawei eSpace version 1.1.11.103 suffers from a DLL Hijacking issue. The vulnerability is caused due to the application loading libraries (mfc71enu.dll, mfc71loc.dll, tcapi.dll and airpcap.dll) in an insecure manner. This can be exploited to load arbitrary libraries by tricking a user into opening a related application file (.html, .jpg, .png) located on a remote WebDAV or SMB share.
Post a reply
You must be logged in to post a comment.