Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 27 Jan 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Micron
Micron crucial Storage Executive |
|
| Vendors & Products |
Micron
Micron crucial Storage Executive |
Mon, 26 Jan 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 26 Jan 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Crucial Storage Executive installer versions prior to 11.08.082025.00 contain a DLL preloading vulnerability. During installation, the installer runs with elevated privileges and loads Windows DLLs using an uncontrolled search path, which can cause a malicious DLL placed alongside the installer to be loaded instead of the intended system library. A local attacker who can convince a victim to run the installer from a directory containing the attacker-supplied DLL can achieve arbitrary code execution with administrator privileges. | |
| Title | Crucial Storage Executive < 11.08.082025.00 Installer DLL Preloading LPE | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-14T02:08:57.983Z
Reserved: 2026-01-22T21:24:30.528Z
Link: CVE-2025-71178
Updated: 2026-01-26T19:48:27.554Z
Status : Deferred
Published: 2026-01-26T18:16:28.103
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-71178
No data.
OpenCVE Enrichment
Updated: 2026-01-27T09:03:33Z