CVE-2008-3156

The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cabinet (CAB) files via unspecified URLs passed to the Update method.
Configurations

Configuration 1 (hide)

cpe:2.3:a:panda:panda_activescan:2.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:48

Type Values Removed Values Added
References () http://karol.wiesek.pl/files/panda.tgz - Exploit () http://karol.wiesek.pl/files/panda.tgz - Exploit
References () http://lists.grok.org.uk/pipermail/full-disclosure/2008-July/063061.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2008-July/063061.html -
References () http://lists.grok.org.uk/pipermail/full-disclosure/2008-July/063068.html - () http://lists.grok.org.uk/pipermail/full-disclosure/2008-July/063068.html -
References () http://secunia.com/advisories/30841 - Vendor Advisory () http://secunia.com/advisories/30841 - Vendor Advisory
References () http://www.securityfocus.com/bid/30086 - () http://www.securityfocus.com/bid/30086 -
References () http://www.securitytracker.com/id?1020432 - () http://www.securitytracker.com/id?1020432 -
References () http://www.vupen.com/english/advisories/2008/2008/references - () http://www.vupen.com/english/advisories/2008/2008/references -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/43587 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/43587 -
References () https://www.exploit-db.com/exploits/6004 - () https://www.exploit-db.com/exploits/6004 -

Information

Published : 2008-07-11 22:41

Updated : 2024-11-21 00:48


NVD link : CVE-2008-3156

Mitre link : CVE-2008-3156

CVE.ORG link : CVE-2008-3156


JSON object : View

Products Affected

panda

  • panda_activescan
CWE
CWE-264

Permissions, Privileges, and Access Controls

NVD-CWE-noinfo