The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote attackers to create or append to arbitrary files.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/165022 | Patch Third Party Advisory US Government Resource |
Configurations
Information
Published : 2005-07-04 21:00
Updated : 2008-09-05 13:46
NVD link : CVE-2005-0360
Mitre link : CVE-2005-0360
JSON object : View
CWE
Products Affected
microsoft
- log_sink_class_activex_control