Untrusted search path vulnerability in Measuresoft ScadaPro Client before 4.0.0 and ScadaPro Server before 4.0.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2012-1834
http://www.us-cert.gov/control_systems/pdf/ICSA-12-145-01.pdf