vendor:
Viewer
by:
SecurityFocus
9.3
CVSS
HIGH
Remote Code Execution
94
CWE
Product Name: Viewer
Affected Version From: 3.5.0.0
Affected Version To: 3.5.0.5
Patch Exists: Yes
Related CWE: N/A
CPE: winds3dviewer
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Winds3D Viewer Vulnerability
Winds3D Viewer is prone to a vulnerability that can allow malicious files to be downloaded an executed within the context of the affected browser that uses the plugin. Successfully exploiting this issue will allow attackers to compromise the affected application that uses the plugin.
Mitigation:
Users should avoid opening untrusted files and should update to the latest version of Winds3D Viewer.