CVE-2008-4050

A certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to (1) create and read arbitrary registry values via the RegistryValue method, and (2) read arbitrary files via the GetTextFile method.
Configurations

Configuration 1 (hide)

cpe:2.3:a:friendly_technologies:friendly_pppoe_client:3.0.0.57:*:*:*:*:*:*:*

History

21 Nov 2024, 00:50

Type Values Removed Values Added
References () http://secunia.com/advisories/31644 - Vendor Advisory () http://secunia.com/advisories/31644 - Vendor Advisory
References () http://securityreason.com/securityalert/4244 - () http://securityreason.com/securityalert/4244 -
References () http://www.securityfocus.com/bid/30939 - () http://www.securityfocus.com/bid/30939 -
References () http://www.securityfocus.com/bid/30940 - Exploit () http://www.securityfocus.com/bid/30940 - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/44787 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/44787 -
References () https://www.exploit-db.com/exploits/6334 - () https://www.exploit-db.com/exploits/6334 -

Information

Published : 2008-09-11 21:06

Updated : 2024-11-21 00:50


NVD link : CVE-2008-4050

Mitre link : CVE-2008-4050

CVE.ORG link : CVE-2008-4050


JSON object : View

Products Affected

friendly_technologies

  • friendly_pppoe_client
CWE
CWE-20

Improper Input Validation