CVE-2019-1010100: Akeo Rufus

High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Akeo Consulting Rufus 3.0 and earlier is affected by: DLL search order hijacking. The impact is: Arbitrary code execution WITH escalation of privilege. The component is: Executable installers, portable executables (ALL executables on the web site). The attack vector is: CAPEC-471, CWE-426, CWE-427.

Affected products

  • Akeo Rufus: up to and including 3.0

Published 2019-07-19. Last modified 2026-06-17.