Dext5.ocx ActiveX 5.0.0.116 and eariler versions contain a vulnerability, which could allow remote attacker to download and execute remote arbitrary file by setting the arguments to the activex method. This can be leveraged for code execution.
References
Link | Resource |
---|---|
http://www.dext5.com/page/support/notice_view.aspx?pSeq=26 | Vendor Advisory |
https://www.krcert.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=35352 | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2020-05-06 06:15
Updated : 2020-05-19 08:44
NVD link : CVE-2019-19168
Mitre link : CVE-2019-19168
JSON object : View
CWE
Products Affected
raonwiz
- dext5
microsoft
- activex