Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 17 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insecure DLL Search Path in M‑Track Duo HD Installer Allows Privilege Escalation via Arbitrary Code Execution |
Thu, 12 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 12 Feb 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
M-audio
M-audio m-track Duo Hd |
|
| Vendors & Products |
M-audio
M-audio m-track Duo Hd |
Thu, 12 Feb 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The installer of M-Track Duo HD version 1.0.0 contains an issue with the DLL search path, which may lead to insecurely loading Dynamic Link Libraries. As a result, arbitrary code may be executed with administrator privileges. | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-02-12T15:07:19.491Z
Reserved: 2026-02-05T00:21:20.346Z
Link: CVE-2026-25676
Updated: 2026-02-12T15:07:11.040Z
Status : Deferred
Published: 2026-02-12T05:17:04.020
Modified: 2026-04-15T00:35:42.020
Link: CVE-2026-25676
No data.
OpenCVE Enrichment
Updated: 2026-04-17T20:15:26Z