Untrusted search path vulnerability in Skype 4.2.0.169 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wab32.dll that is located in the same folder as a .skype file.
Conclusion & alert: CVE-2010-3136 is rated High Exploit Risk (76.8/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 1.41%). Core evidence: 2 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| 14766 | exploit_db | edb | 2010-08-25 | Exploit-DB ↗ |
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-05-05 | 4.58% | 1.41% | -3.17% |
| 2 | 2025-03-30 | 7.36% | 4.58% | -2.77% |
| 3 | 2025-03-29 | — | 7.36% | — |
Full EPSS history (9 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.3 | 2.0 | HIGH |
|
8.6 | 10.0 | [email protected] |
: Per: http://cwe.mitre.org/data/definitions/426.html CWE-426 - 'Untrusted Search Path Vulnerability'
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| skype | skype | <= 4.2.0.169 | cpe:2.3:a:skype:skype:*:*:*:*:*:*:*:* |
| skype | skype | 0.90.0.5 | cpe:2.3:a:skype:skype:0.90.0.5:beta:*:*:*:*:*:* |
| skype | skype | 0.90.0.10 | cpe:2.3:a:skype:skype:0.90.0.10:beta:*:*:*:*:*:* |
| skype | skype | 0.91.0.2 | cpe:2.3:a:skype:skype:0.91.0.2:beta:*:*:*:*:*:* |
| skype | skype | 0.92.0.4 | cpe:2.3:a:skype:skype:0.92.0.4:beta:*:*:*:*:*:* |
| skype | skype | 0.93.0.18 | cpe:2.3:a:skype:skype:0.93.0.18:beta:*:*:*:*:*:* |
| skype | skype | 0.93.1.1 | cpe:2.3:a:skype:skype:0.93.1.1:beta:*:*:*:*:*:* |
| skype | skype | 0.94.0.19 | cpe:2.3:a:skype:skype:0.94.0.19:beta:*:*:*:*:*:* |
| skype | skype | 0.94.0.28 | cpe:2.3:a:skype:skype:0.94.0.28:beta:*:*:*:*:*:* |
| skype | skype | 0.95.0.11 | cpe:2.3:a:skype:skype:0.95.0.11:beta:*:*:*:*:*:* |
| skype | skype | 0.95.0.25 | cpe:2.3:a:skype:skype:0.95.0.25:beta:*:*:*:*:*:* |
| skype | skype | 0.95.0.36 | cpe:2.3:a:skype:skype:0.95.0.36:beta:*:*:*:*:*:* |
| skype | skype | 0.95.0.40 | cpe:2.3:a:skype:skype:0.95.0.40:beta:*:*:*:*:*:* |
| skype | skype | 0.96.0.1 | cpe:2.3:a:skype:skype:0.96.0.1:beta:*:*:*:*:*:* |
| skype | skype | 0.96.0.3 | cpe:2.3:a:skype:skype:0.96.0.3:beta:*:*:*:*:*:* |
| skype | skype | 0.97.0.1 | cpe:2.3:a:skype:skype:0.97.0.1:beta:*:*:*:*:*:* |
| skype | skype | 0.97.0.3 | cpe:2.3:a:skype:skype:0.97.0.3:beta:*:*:*:*:*:* |
| skype | skype | 0.97.0.6 | cpe:2.3:a:skype:skype:0.97.0.6:beta:*:*:*:*:*:* |
| skype | skype | 0.97.0.40 | cpe:2.3:a:skype:skype:0.97.0.40:beta:*:*:*:*:*:* |
| skype | skype | 0.98.0.04 | cpe:2.3:a:skype:skype:0.98.0.04:beta:*:*:*:*:*:* |
| skype | skype | 0.98.0.6 | cpe:2.3:a:skype:skype:0.98.0.6:beta:*:*:*:*:*:* |
| skype | skype | 0.98.0.28 | cpe:2.3:a:skype:skype:0.98.0.28:beta:*:*:*:*:*:* |
| skype | skype | 0.98.0.42 | cpe:2.3:a:skype:skype:0.98.0.42:beta:*:*:*:*:*:* |
| skype | skype | 0.98.0.68 | cpe:2.3:a:skype:skype:0.98.0.68:beta:*:*:*:*:*:* |
| skype | skype | 1.0.0.9 | cpe:2.3:a:skype:skype:1.0.0.9:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.10 | cpe:2.3:a:skype:skype:1.0.0.10:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.18 | cpe:2.3:a:skype:skype:1.0.0.18:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.29 | cpe:2.3:a:skype:skype:1.0.0.29:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.94 | cpe:2.3:a:skype:skype:1.0.0.94:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.97 | cpe:2.3:a:skype:skype:1.0.0.97:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.100 | cpe:2.3:a:skype:skype:1.0.0.100:*:*:*:*:*:*:* |
| skype | skype | 1.0.0.106 | cpe:2.3:a:skype:skype:1.0.0.106:*:*:*:*:*:*:* |
| skype | skype | 1.1.0.6 | cpe:2.3:a:skype:skype:1.1.0.6:*:*:*:*:*:*:* |
| skype | skype | 1.1.0.73 | cpe:2.3:a:skype:skype:1.1.0.73:*:*:*:*:*:*:* |
| skype | skype | 1.1.0.79 | cpe:2.3:a:skype:skype:1.1.0.79:*:*:*:*:*:*:* |
| skype | skype | 1.2.0.37 | cpe:2.3:a:skype:skype:1.2.0.37:*:*:*:*:*:*:* |
| skype | skype | 1.2.0.41 | cpe:2.3:a:skype:skype:1.2.0.41:*:*:*:*:*:*:* |
| skype | skype | 1.2.0.48 | cpe:2.3:a:skype:skype:1.2.0.48:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.45 | cpe:2.3:a:skype:skype:1.3.0.45:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.48 | cpe:2.3:a:skype:skype:1.3.0.48:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.51 | cpe:2.3:a:skype:skype:1.3.0.51:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.54 | cpe:2.3:a:skype:skype:1.3.0.54:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.55 | cpe:2.3:a:skype:skype:1.3.0.55:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.57 | cpe:2.3:a:skype:skype:1.3.0.57:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.60 | cpe:2.3:a:skype:skype:1.3.0.60:*:*:*:*:*:*:* |
| skype | skype | 1.3.0.66 | cpe:2.3:a:skype:skype:1.3.0.66:*:*:*:*:*:*:* |
| skype | skype | 1.4.0.71 | cpe:2.3:a:skype:skype:1.4.0.71:*:*:*:*:*:*:* |
| skype | skype | 1.4.0.78 | cpe:2.3:a:skype:skype:1.4.0.78:*:*:*:*:*:*:* |
| skype | skype | 1.4.0.84 | cpe:2.3:a:skype:skype:1.4.0.84:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.69 | cpe:2.3:a:skype:skype:2.0.0.69:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.73 | cpe:2.3:a:skype:skype:2.0.0.73:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.79 | cpe:2.3:a:skype:skype:2.0.0.79:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.81 | cpe:2.3:a:skype:skype:2.0.0.81:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.90 | cpe:2.3:a:skype:skype:2.0.0.90:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.97 | cpe:2.3:a:skype:skype:2.0.0.97:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.103 | cpe:2.3:a:skype:skype:2.0.0.103:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.105 | cpe:2.3:a:skype:skype:2.0.0.105:*:*:*:*:*:*:* |
| skype | skype | 2.0.0.107 | cpe:2.3:a:skype:skype:2.0.0.107:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.72 | cpe:2.3:a:skype:skype:2.5.0.72:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.82 | cpe:2.3:a:skype:skype:2.5.0.82:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.91 | cpe:2.3:a:skype:skype:2.5.0.91:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.113 | cpe:2.3:a:skype:skype:2.5.0.113:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.122 | cpe:2.3:a:skype:skype:2.5.0.122:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.126 | cpe:2.3:a:skype:skype:2.5.0.126:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.130 | cpe:2.3:a:skype:skype:2.5.0.130:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.137 | cpe:2.3:a:skype:skype:2.5.0.137:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.141 | cpe:2.3:a:skype:skype:2.5.0.141:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.151 | cpe:2.3:a:skype:skype:2.5.0.151:*:*:*:*:*:*:* |
| skype | skype | 2.5.0.154 | cpe:2.3:a:skype:skype:2.5.0.154:*:*:*:*:*:*:* |
| skype | skype | 2.6.0.67 | cpe:2.3:a:skype:skype:2.6.0.67:beta:*:*:*:*:*:* |
| skype | skype | 2.6.0.74 | cpe:2.3:a:skype:skype:2.6.0.74:beta:*:*:*:*:*:* |
| skype | skype | 2.6.0.81 | cpe:2.3:a:skype:skype:2.6.0.81:beta:*:*:*:*:*:* |
| skype | skype | 2.6.0.97 | cpe:2.3:a:skype:skype:2.6.0.97:beta:*:*:*:*:*:* |
| skype | skype | 2.6.0.103 | cpe:2.3:a:skype:skype:2.6.0.103:beta:*:*:*:*:*:* |
| skype | skype | 2.6.0.105 | cpe:2.3:a:skype:skype:2.6.0.105:beta:*:*:*:*:*:* |
| skype | skype | 3.0.0.106 | cpe:2.3:a:skype:skype:3.0.0.106:beta:*:*:*:*:*:* |
| skype | skype | 3.0.0.123 | cpe:2.3:a:skype:skype:3.0.0.123:beta:*:*:*:*:*:* |
| skype | skype | 3.0.0.137 | cpe:2.3:a:skype:skype:3.0.0.137:beta:*:*:*:*:*:* |
| skype | skype | 3.0.0.154 | cpe:2.3:a:skype:skype:3.0.0.154:beta:*:*:*:*:*:* |
| skype | skype | 3.0.0.190 | cpe:2.3:a:skype:skype:3.0.0.190:*:*:*:*:*:*:* |