vendor:
Windows XP
by:
e.wiZz!
9.3
CVSS
HIGH
ActiveX Remote Code Execution
119
CWE
Product Name: Windows XP
Affected Version From: 1.0.0.7
Affected Version To: 1.0.0.7
Patch Exists: No
Related CWE: CVE-2008-4609
CPE: o:microsoft:windows_xp
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2008
Phoenician Casino FlashAX ActiveX Remote Code Execution FTW!
A vulnerability exists in the FlashAX ActiveX control (FlashAX.ocx) version 1.0.0.7, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an unsafe implementation of the "Run()" method, which can be exploited to execute arbitrary programs.
Mitigation:
No mitigation is available.