CVE Published: 07/05/2020 |
CVE Updated: 05/08/2024 |
CVE Year: 2019 Source: krcert |
Vendor: RAONWiz |
Product: dext.ocx ActiveX Control in Dext5 Upload Status : PUBLISHED
CVE-2019-19164 Description
dext5.ocx ActiveX Control in Dext5 Upload 5.0.0.112 and earlier versions contains a vulnerability that could allow remote files to be executed by setting the arguments to the activex method. A remote attacker could induce a user to access a crafted web page, causing damage such as malicious code infection.
Metrics
CVSS Version: 3.1 |
Base Score: 7.8 HIGH Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H