Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 29 Apr 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | DLL Hijacking in LiveOn Meet and CanonNWCam Plugin Installers |
Tue, 28 Apr 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Japan Media Systems Corporation
Japan Media Systems Corporation canonnwcamplugin.exe Japan Media Systems Corporation canonnwcampluginforadmin.exe Japan Media Systems Corporation downloader5installer.exe Japan Media Systems Corporation downloader5installerforadmin.exe |
|
| Vendors & Products |
Japan Media Systems Corporation
Japan Media Systems Corporation canonnwcamplugin.exe Japan Media Systems Corporation canonnwcampluginforadmin.exe Japan Media Systems Corporation downloader5installer.exe Japan Media Systems Corporation downloader5installerforadmin.exe |
Thu, 23 Apr 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Apr 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The installers of LiveOn Meet Client for Windows (Downloader5Installer.exe and Downloader5InstallerForAdmin.exe) and the installers of Canon Network Camera Plugin (CanonNWCamPlugin.exe and CanonNWCamPluginForAdmin.exe) insecurely load Dynamic Link Libraries (DLLs). If a malicious DLL is placed at the same directory, the affected installer may load that DLL and execute its code with the privilege of the user invoking the installer. | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2026-04-23T16:23:44.557Z
Reserved: 2026-04-20T02:53:09.291Z
Link: CVE-2026-32679
Updated: 2026-04-23T14:18:28.681Z
Status : Awaiting Analysis
Published: 2026-04-23T00:16:45.157
Modified: 2026-04-24T14:50:56.203
Link: CVE-2026-32679
No data.
OpenCVE Enrichment
Updated: 2026-04-29T01:45:26Z