UPDF Windows DLL Search Path Hijacking Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A DLL search path hijacking vulnerability has been identified in the UPDF.exe executable for Windows, specifically in version 1.8.5.0. This vulnerability allows attackers with local access to execute arbitrary code by placing a dxtn.dll file of their choice in the 'C:\Users\<user>\AppData\Local\Microsoft\WindowsApps\' directory. The exploitation of this vulnerability could lead to unauthorized code execution and persistence on the affected system.

Impact

Exploitation of this vulnerability allows for arbitrary code execution on the affected system.

Added: Sep 10, 2025, 12:19 PM
Updated: Sep 10, 2025, 12:19 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.