A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a command injection attack. The vulnerability is due to insufficient input validation of command parameters. An crafted malicious parameters could cause arbitrary command to execute.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-16982 A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow attacker to perform a command injection attack. The vulnerability is due to insufficient input validation of command parameters. An crafted malicious parameters could cause arbitrary command to execute.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: krcert

Published:

Updated: 2024-08-05T05:26:46.975Z

Reserved: 2018-01-03T00:00:00

Link: CVE-2018-5197

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-01-02T14:29:00.360

Modified: 2024-11-21T04:08:18.907

Link: CVE-2018-5197

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.