Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-1911
HistoryMay 12, 2010 - 11:46 a.m.

Design/Logic Flaw

2010-05-1211:46:00
PRIOn knowledge base
www.prio-n.com
1

8 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.9%

The site-locking implementation in the SdcWebSecureBase interface in tgctlcm.dll in Consona Live Assistance, Dynamic Agent, and Subscriber Assistance relies on a list of server domain names to restrict execution of ActiveX controls, which makes it easier for man-in-the-middle attackers to execute arbitrary code via a DNS hijacking attack.

8 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

68.9%

Related for PRION:CVE-2010-1911