UPDF DLL Search Path Hijacking Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A DLL search path hijacking vulnerability has been identified in the UPDF.exe executable for Windows, specifically in version 1.8.5.0. This vulnerability allows attackers with local access to execute arbitrary code by placing a malicious FREngine.dll file in the 'C:\Users\<user>\AppData\Local\UPDF\FREngine\Bin64\' directory. The exploitation of this vulnerability could lead to unauthorized code execution and persistence on the affected system.

Impact

Exploitation of this vulnerability allows for arbitrary code execution on the affected system.

Added: Sep 10, 2025, 12:18 PM
Updated: Sep 10, 2025, 12:18 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
2.9
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.