Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2frg-p6rf-fcfj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to download an arbitrary library file onto a client system via a "custom update server" argument. NOTE: this can be leveraged for code execution by writing to a Startup folder.

The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to download an arbitrary library file onto a client system via a "custom update server" argument. NOTE: this can be leveraged for code execution by writing to a Startup folder.

EPSS

Процентиль: 97%
0.34903
Средний

Дефекты

CWE-94

Связанные уязвимости

nvd
около 17 лет назад

The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to download an arbitrary library file onto a client system via a "custom update server" argument. NOTE: this can be leveraged for code execution by writing to a Startup folder.

EPSS

Процентиль: 97%
0.34903
Средний

Дефекты

CWE-94