PT-2009-2491 · Chilkat · Chilkat Software Imap Activex Control+1
E.Wizz!
·
Publicado
2009-08-21
·
Atualizado
2017-09-29
·
CVE-2008-7022
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Chilkat Software IMAP ActiveX control version ChilkatMail2.ChilkatMailMan2.1
Description
The issue is related to an insecure method in the ChilkatMail v7 9.dll component of the Chilkat Software IMAP ActiveX control. This allows remote attackers to execute arbitrary programs via the
LoadXmlEmail method.Recommendations
For version ChilkatMail2.ChilkatMailMan2.1, as a temporary workaround, consider disabling the
LoadXmlEmail method until a patch is available.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Chilkat Software Imap Activex Control
Chilkatmail V7 9.Dll