PT-2006-3458 · Frontrange · Frontrange Iheat Activex

Published

2006-05-22

·

Updated

2018-10-18

·

CVE-2006-2511

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions FrontRange iHEAT ActiveX version (affected versions not specified)
Description The issue allows remote authenticated users to execute arbitrary programs or access arbitrary files on the host machine. This is achieved by uploading a file with an extension that is not associated with an application and then selecting a file from the "Open With..." dialog.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-2511

Affected Products

Frontrange Iheat Activex