CVE Database
/

CVE-2008-2551

Back to search

CVE-2008-2551

Published: Jun 4, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

The DownloaderActiveX Control (DownloaderActiveX.ocx) in Icona SpA C6 Messenger 1.0.0.1 allows remote attackers to force the download and execution of arbitrary files via a URL in the propDownloadUrl parameter with the propPostDownloadAction parameter set to "run."

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2008-1733
vdb-entry
x_refsource_VUPEN
3926
third-party-advisory
x_refsource_SREASON
30512
third-party-advisory
x_refsource_SECUNIA
29519
vdb-entry
x_refsource_BID
5732
exploit
x_refsource_EXPLOIT-DB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now