Silicon Labs USBXpress Win 98SE Dev Kit DLL Hijacking Vulnerability Allowing Privilege Escalation and Arbitrary Code Execution

Vulnerability

A DLL hijacking vulnerability has been identified in the USBXpress Win 98SE Dev Kit installer. This vulnerability arises from an uncontrolled search path in the installer, which can be exploited to escalate privileges and execute arbitrary code when the affected installer is run.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation and the execution of arbitrary code with elevated rights.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.