The DownloaderActiveX Control (DownloaderActiveX.ocx) in Icona SpA C6 Messenger 1.0.0.1 allows remote attackers to force the download and execution of arbitrary files via a URL in the propDownloadUrl parameter with the propPostDownloadAction parameter set to "run."
References
Configurations
Information
Published : 2008-06-04 16:32
Updated : 2018-10-11 13:41
NVD link : CVE-2008-2551
Mitre link : CVE-2008-2551
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
icona
- instant_messenger