vendor:
iMesh
by:
7.5
CVSS
HIGH
Code-Execution
CWE
Product Name: iMesh
Affected Version From: 7.1.0.37263
Affected Version To: 7.1.0.37263
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows
iMesh Code-Execution Vulnerability
iMesh is prone to a code-execution vulnerability because the application fails to sanitize user-supplied data, which can lead to memory corruption. Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application using an affected ActiveX control (typically Internet Explorer). Failed exploit attempts likely result in denial-of-service conditions.