Lucene search

K
cveMitreCVE-2008-6638
HistoryApr 07, 2009 - 2:17 p.m.

CVE-2008-6638

2009-04-0714:17:17
CWE-16
mitre
web.nvd.nist.gov
30
cve-2008-6638
insecure method
versalsoft
http image uploader
activex control
file deletion
vulnerability
nvd

CVSS2

8.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:C/A:C

AI Score

7

Confidence

Low

EPSS

0.004

Percentile

74.5%

Insecure method vulnerability in the Versalsoft HTTP Image Uploader ActiveX control (UUploaderSvrD.dll 6.0.0.35) allows remote attackers to delete arbitrary files via the RemoveFileOrDir method.

Affected configurations

Nvd
Node
versalsofthttp_file_upload_activex_controlMatch6.0.0.35
VendorProductVersionCPE
versalsofthttp_file_upload_activex_control6.0.0.35cpe:2.3:a:versalsoft:http_file_upload_activex_control:6.0.0.35:*:*:*:*:*:*:*

CVSS2

8.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:C/A:C

AI Score

7

Confidence

Low

EPSS

0.004

Percentile

74.5%

Related for CVE-2008-6638