vendor:
Chilkat IMAP ActiveX
by:
e.wiZz!
7.5
CVSS
HIGH
File Execution & Denial of Service
N/A
CWE
Product Name: Chilkat IMAP ActiveX
Affected Version From: ChilkatMail_v7_9.dll
Affected Version To: ChilkatMail_v7_9.dll
Patch Exists: Yes
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: IE 6,Win xp sp2
2008
Chilkat IMAP ActiveX File Execution&IE DoS
Function 'LoadXmlEmail()' in ChilkatMail_v7_9.dll allows us to execute file which leads to DoS in IE. Tested on IE 6,Win xp sp2.
Mitigation:
Update to the latest version of ChilkatMail_v7_9.dll