📦

tim

Vendor: tencent

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 1 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 2.26% Exploit Prob.
Latest CVE CVE-2023-34312 Jun 01

Security Vulnerability Index

Page 1 / 1
7.8 CVSS
CVE-2023-34312
RCE Exploit Found

In Tencent QQ through 9.7.8.29039 and TIM through 3.4.7.22084, QQProtect.exe and QQProtectEngine.dll do not validate pointers from inter-process communication, which leads to a write-what-where condition.

EPSS: 4.38%
7.8 CVSS

Shenzhen Tencent TIM Windows client 3.0.0.21315 has a DLL hijacking vulnerability, which can be exploited by attackers to execute malicious code.

EPSS: 0.14%