10
CVSSv2

CVE-2007-6493

Published: 20/12/2007 Updated: 15/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in iMesh 7.1.0.x and previous versions allows remote malicious users to execute arbitrary code via a certain argument to the SetHandler method.

Vulnerable Product Search on Vulmon Subscribe to Product

imesh.com imesh

Exploits

<!-- iMesh <= 710x IMWebControl Class (IMWebdll 700x) remote heap exploit (IE7/XP full patched) by rgod, site: retrogodaltervistaorg/ software site: wwwimeshcom "iMesh is a file sharing and online social network It uses a proprietary, centralized, P2P protocol iMesh is owned by an American company iMesh, Inc and ...
source: wwwsecurityfocuscom/bid/26916/info iMesh is prone to a code-execution vulnerability because the application fails to sanitize user-supplied data, which can lead to memory corruption Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application using an affected ActiveX co ...