CVE-2026-25191: Digital Arts Inc Finalcode ver.5 Series
High severity, CVSS 8.4. EPSS: 0.1% chance of exploitation in the next 30 days.
The installer of FinalCode Client provided by Digital Arts Inc. contains an issue with the DLL search path. If a user is directed to place a malicious DLL file and the installer to the same directory and execute the installer, arbitrary code may be executed with the installer's execution privilege.
Affected products
- Digital Arts Inc Finalcode ver.5 Series: before 5.43R01 (fixed in 5.43R01)
- Digital Arts Inc Finalcode ver.6 Series: before 6.51R01 (fixed in 6.51R01)
Published 2026-02-26. Last modified 2026-06-17.