CVE-2012-3004: Realflex Flexview

Medium severity, CVSS 6.9. EPSS: 0.4% chance of exploitation in the next 30 days.

Multiple untrusted search path vulnerabilities in RealFlex RealWin before 2.1.13, FlexView before 3.1.86, and RealWinDemo before 2.1.13 allow local users to gain privileges via a Trojan horse (1) realwin.dll or (2) keyhook.dll file in the current working directory.

Affected products

  • Realflex Flexview: up to and including 3.1.85
  • Realflex Realwin: up to and including 2.1.12; version 1.06 only; version 2.0 only; version 2.1 only
  • Realflex Realwindemo: up to and including 2.1.12

Published 2012-09-08. Last modified 2026-06-16.