CVE-2014-0758
24.02.2014, 04:48
An ActiveX control in GenLaunch.htm in ICONICS GENESIS32 8.0, 8.02, 8.04, and 8.05 allows remote attackers to execute arbitrary programs via a crafted HTML document.Enginsight
Vendor | Product | Version |
---|---|---|
iconics | genesis32 | 8.0 |
iconics | genesis32 | 8.02 |
iconics | genesis32 | 8.04 |
iconics | genesis32 | 8.05 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-749 - Exposed Dangerous Method or FunctionThe software provides an Applications Programming Interface (API) or similar interface for interaction with external actors, but the interface includes a dangerous method or function that is not properly restricted.
- CWE-20 - Improper Input ValidationThe product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.