CVE Database
/

CVE-2018-5197

Back to search

CVE-2018-5197

Published: Jan 2, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a command injection attack. The vulnerability is due to insufficient input validation of command parameters. An crafted malicious parameters could cause arbitrary command to execute.

VendorProductVersions

TOBESOFT

XPLATFORM ActiveX

affected
extcommon.dll 9.2, 9.2.1, 9.2.2

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now