CVE Published: 15/08/2019 |
CVE Updated: 04/08/2024 |
CVE Year: 2019 Source: krcert |
Vendor: YES24 |
Product: YES24 PC VIEWER Status : PUBLISHED
CVE-2019-12809 Description
Yes24ViewerX ActiveX Control 1.0.327.50126 and earlier versions contains a vulnerability that could allow remote attackers to download and execute arbitrary files by setting the arguments to the ActiveX method. This can be leveraged for code execution.