CVE-2012-3841: Kmplayer

High severity, CVSS 9.3. EPSS: 3.3% chance of exploitation in the next 30 days.

Untrusted search path vulnerability in KMPlayer 3.2.0.19 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse ehtrace.dll that is located in the current working directory.

Affected products

  • Kmplayer Kmplayer: version 3.2.0.19 only

Published 2012-07-03. Last modified 2026-06-16.