CVE-2016-2542: Flexera Installshield
High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Untrusted search path vulnerability in Flexera InstallShield through 2015 SP1 allows local users to gain privileges via a Trojan horse DLL in the current working directory of a setup-launcher executable file.
Affected products
- Flexera Installshield: before 2015 (fixed in 2015); version 2015 only
Published 2016-02-24. Last modified 2026-06-17.