iMBCContents ActiveX Control "Execute()" Method Command Execution Vulnerability
Technical Description



A vulnerability has been identified in iMBCContents ActiveX Control,which could be exploited by remote attackers to take complete controlof an affected system. This flaw is due to a design error in theinsecure "Execute()" method, which could be exploited by remoteattackers to execute arbitrary commands on a vulnerable system bytricking a user into visiting a specially crafted Web page.



Affected Products



iMBCContents ActiveX Control versions prior to 2.0.0.59



Solution



Upgrade to iMBCContents ActiveX Control version 2.0.0.59 :

http://www.imbc.com/



더보기

댓글,