EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method. This can be leveraged for code execution. When the vulnerable method is called, they fail to properly check the parameters that are passed to it.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-28758 | EyeSurfer BflyInstallerX.ocx v1.0.0.16 and earlier versions contain a vulnerability that could allow remote files to be download by setting the arguments to the vulnerable method. This can be leveraged for code execution. When the vulnerable method is called, they fail to properly check the parameters that are passed to it. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: krcert
Published:
Updated: 2024-09-17T04:04:52.364Z
Reserved: 2020-01-22T00:00:00
Link: CVE-2020-7826
No data.
Status : Modified
Published: 2020-07-17T16:15:11.747
Modified: 2024-11-21T05:37:52.787
Link: CVE-2020-7826
No data.
OpenCVE Enrichment
No data.
EUVD