29109Third-party advisory
http://secunia.com/advisories/29109 CVE-2008-1116
Rising AntiVirus Online Scanner - Insecure Method Flaw
Record summary
CVE-2008-1116 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Insecure method vulnerability in the Web Scan Object ActiveX control (OL2005.dll) in Rising Antivirus Online Scanner allows remote attackers to force the download and execution of arbitrary code by setting the BaseURL property and invoking the UpdateEngine method. NOTE: some of these details are obtained from third party information.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBRising AntiVirus Online Scanner - Insecure Method FlawExploitDB exploitby John SmithNot analyzed1 file
References
627997vdb entry
http://www.securityfocus.com/bid/27997 ADV-2008-0683vdb entry
http://www.vupen.com/english/advisories/2008/0683/references risingonline-webscan-code-execution(40838)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/40838 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2008-1116 5188exploit
https://www.exploit-db.com/exploits/5188