CVE-2009-4850

The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneURL property value with a URL for a .exe file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:awingsoft:awakening_winds3d_viewer_plugin:3.5.0.9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-05-07 18:30

Updated : 2024-02-28 11:41


NVD link : CVE-2009-4850

Mitre link : CVE-2009-4850

CVE.ORG link : CVE-2009-4850


JSON object : View

Products Affected

awingsoft

  • awakening_winds3d_viewer_plugin
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer