CVE-2010-0103
high · 9.3UsbCharger.dll in the Energizer DUO USB battery charger software contains a backdoor that is implemented through the Arucer.dll file in the %WINDIR%\system32 directory, which allows remote attackers to download arbitrary programs onto a Windows PC, and execute these programs, via a request to TCP port 7777.
9.3
CVSS
27.4%
EPSS (exploit prob.)
98th
EPSS percentile
2010-03-10
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-94
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| energizer | duo_usb | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.kb.cert.org/vuls/id/154421
- http://www.marketwatch.com/story/energizer-announces-duo-charger-and-usb-charger-software-problem-2010-03-05
- http://www.securityfocus.com/bid/38571
- http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software
- http://www.kb.cert.org/vuls/id/154421
- http://www.marketwatch.com/story/energizer-announces-duo-charger-and-usb-charger-software-problem-2010-03-05
- http://www.securityfocus.com/bid/38571
- http://www.symantec.com/connect/blogs/trojan-found-usb-battery-charger-software
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2010-0103