CVE-2020-7803

IMGTech Co,Ltd ZInsX.ocx ActiveX Control in Zoneplayer 2.0.1.3, version 2.0.1.4 and prior versions on Windows. File Donwload vulnerability in ZInsX.ocx of IMGTech Co,Ltd Zoneplayer allows attacker to cause arbitrary code execution.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:imgtech:zoneplayer:2.0.1.3:*:*:*:*:*:*:*
cpe:2.3:a:imgtech:zoneplayer:2.0.1.4:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:37

Type Values Removed Values Added
CVSS v2 : 6.8
v3 : 8.8
v2 : 6.8
v3 : 7.8
References () http://www.zoneplayer.co.kr/ - Product, Vendor Advisory () http://www.zoneplayer.co.kr/ - Product, Vendor Advisory
References () https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=35346 - Third Party Advisory () https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=35346 - Third Party Advisory

Information

Published : 2020-05-07 18:15

Updated : 2024-11-21 05:37


NVD link : CVE-2020-7803

Mitre link : CVE-2020-7803

CVE.ORG link : CVE-2020-7803


JSON object : View

Products Affected

imgtech

  • zoneplayer

microsoft

  • windows
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo