Soft-o Free Password Manager version 1.1.20 suffers from a dll hijacking vulnerability.
e1b138eb2b5d08216026d57417f77d003b577e3bbea9fd16b8c2e12c2a9edc27
# Title:
Soft-o Free Password Manager 1.1.20 DLL hijacking
# Credit:
Christian Bortone
# CVE:
CVE-2023-25428
# Date:
08/05/2023 (dd/mm/yyyy)
# Details:
PMHook.dll is vulnerable to DLL hijacking attacks. An attacker can launch a DLL hijacking attack by placing a malicious DLL named PMHook.dll in the target system directory and exploiting vulnerabilities in the DLL loading mechanism.