PT-2009-2591 · Evans Programming · Evans Programming Registry Pro

Published

2009-08-31

·

Updated

2017-09-29

·

CVE-2008-7122

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Evans Programming Registry Pro (affected versions not specified)
Description The issue concerns multiple insecure method vulnerabilities in an ActiveX control. These vulnerabilities allow remote attackers to read and modify sensitive registry keys. The affected methods include About, CreateKey, DeleteBranch, DeleteKey, DeleteValue, EnumKeys, EnumValues, QueryType, QueryValue, RenameKey, and SetValue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2008-7122

Affected Products

Evans Programming Registry Pro