A certain ActiveX control in NOS Microsystems getPlus Download Manager (aka DLM or Downloader) 1.5.2.35, as used in Adobe Download Manager, improperly validates requests involving web sites that are not in subdomains, which allows remote attackers to force the download and installation of arbitrary programs via a crafted name for a download site.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: adobe
Published: 2010-02-23T20:00:00
Updated: 2024-08-07T00:37:54.133Z
Reserved: 2010-01-06T00:00:00
Link: CVE-2010-0189
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-02-23T20:30:00.703
Modified: 2024-11-21T01:11:43.870
Link: CVE-2010-0189
Redhat
No data.