CVE-2017-2221: Baidu IME

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Untrusted search path vulnerability in Installer of Baidu IME Ver3.6.1.6 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

Affected products

  • Baidu Baidu IME: up to and including 3.6.1.6

Published 2017-08-04. Last modified 2026-06-17.