Логотип exploitDog
bind:CVE-2005-3657
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2005-3657

Количество 2

Количество 2

nvd логотип

CVE-2005-3657

около 20 лет назад

The ActiveX control in MCINSCTL.DLL for McAfee VirusScan Security Center does not use the IObjectSafetySiteLock API to restrict access to required domains, which allows remote attackers to create or append to arbitrary files via the StartLog and AddLog methods in the MCINSTALL.McLog object.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-q8cw-f2cj-49gc

почти 4 года назад

The ActiveX control in MCINSCTL.DLL for McAfee VirusScan Security Center does not use the IObjectSafetySiteLock API to restrict access to required domains, which allows remote attackers to create or append to arbitrary files via the StartLog and AddLog methods in the MCINSTALL.McLog object.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2005-3657

The ActiveX control in MCINSCTL.DLL for McAfee VirusScan Security Center does not use the IObjectSafetySiteLock API to restrict access to required domains, which allows remote attackers to create or append to arbitrary files via the StartLog and AddLog methods in the MCINSTALL.McLog object.

CVSS2: 5
1%
Низкий
около 20 лет назад
github логотип
GHSA-q8cw-f2cj-49gc

The ActiveX control in MCINSCTL.DLL for McAfee VirusScan Security Center does not use the IObjectSafetySiteLock API to restrict access to required domains, which allows remote attackers to create or append to arbitrary files via the StartLog and AddLog methods in the MCINSTALL.McLog object.

1%
Низкий
почти 4 года назад

Уязвимостей на страницу