The Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 does not properly restrict the values of the WMIAttributesOfInterest property, which allows remote attackers to execute arbitrary WMI Query Language (WQL) statements via a crafted value, as demonstrated by a value that triggers disclosure of information about installed software.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: flexera

Published: 2011-02-21T17:00:00

Updated: 2024-08-06T21:51:08.031Z

Reserved: 2011-01-06T00:00:00

Link: CVE-2011-0330

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2011-02-21T18:00:01.223

Modified: 2011-03-18T02:56:44.647

Link: CVE-2011-0330

cve-icon Redhat

No data.