vendor:
Mobile Mouse
by:
Chokri Hammedi
9.8
CVSS
CRITICAL
Remote Code Execution (RCE)
20
CWE
Product Name: Mobile Mouse
Affected Version From: 3.6.0.4
Affected Version To: 3.6.0.4
Patch Exists: YES
Related CWE:
CPE: a:mobile_mouse:mobile_mouse:3.6.0.4
Platforms Tested: Windows 10 Enterprise LTSC Build 17763
2022
Mobile Mouse 3.6.0.4 – Remote Code Execution (RCE)
A vulnerability in Mobile Mouse 3.6.0.4 allows an attacker to execute arbitrary code on the target system. The vulnerability exists due to an improper validation of user-supplied input. An attacker can exploit this vulnerability by sending a specially crafted request to the vulnerable application. Successful exploitation of this vulnerability could result in arbitrary code execution on the target system.
Mitigation:
Upgrade to the latest version of Mobile Mouse 3.6.0.4 or later.