CVE-2008-1116
Published Mar 3, 2008
Last updated 7 years ago
Overview
- Description
- Insecure method vulnerability in the Web Scan Object ActiveX control (OL2005.dll) in Rising Antivirus Online Scanner allows remote attackers to force the download and execution of arbitrary code by setting the BaseURL property and invoking the UpdateEngine method. NOTE: some of these details are obtained from third party information.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:rising_antivirus_international:rising_web_scan_object:18.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B44E1BDE-E6E8-4805-8475-C39FC08F6B26" } ], "operator": "OR" } ] } ]