Untrusted search path vulnerability in Apple iTunes before 9.1, when running on Windows 7, Vista, and XP, allows local users and possibly remote attackers to gain privileges via a Trojan horse DLL in the current working directory.
AV:N/AC:M/Au:N/C:C/I:C/A:C
This vulnerability has a 3.04% probability of being exploited in the next 30 days, ranking higher than 87% of all scored CVEs.