CVE-2016-1417: Snort

High severity, CVSS 8.8. EPSS: 4.4% chance of exploitation in the next 30 days.

Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse tcapi.dll that is located in the same folder on a remote file share as a pcap file that is being processed.

Affected products

  • Snort Snort: version 2.9.7.0 only

Published 2017-01-23. Last modified 2026-06-17.