The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote attackers to create or append to arbitrary files.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.kb.cert.org/vuls/id/165022 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: certcc
Published: 2005-07-01T04:00:00Z
Updated: 2024-09-16T23:01:42.263Z
Reserved: 2005-02-11T00:00:00Z
Link: CVE-2005-0360
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2005-07-05T04:00:00.000
Modified: 2008-09-05T20:46:04.463
Link: CVE-2005-0360
Redhat
No data.