Yandex Telemost for Desktop DLL Hijacking Vulnerability

Vulnerability

A DLL hijacking vulnerability has been identified in Yandex Telemost for Desktop versions prior to 2.7.0. This vulnerability arises from the use of an untrusted search path, allowing for the potential execution of malicious DLLs.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution by allowing a malicious DLL to be loaded and executed by the application.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.4
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.