Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w65-px9w-6j3c

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

EPSS

Процентиль: 98%
0.60161
Средний

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 17 лет назад

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

EPSS

Процентиль: 98%
0.60161
Средний

Дефекты

CWE-200