9.3
CVSSv2

CVE-2008-2111

Published: 07/05/2008 Updated: 08/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The ActiveX Control (yNotifier.dll) in Yahoo! Assistant 3.6 and previous versions allows remote malicious users to execute arbitrary code via unspecified vectors in the Ynoifier COM object that trigger memory corruption.

Vulnerable Product Search on Vulmon Subscribe to Product

yahoo yahoo assistant

Exploits

source: wwwsecurityfocuscom/bid/29065/info Yahoo! Assistant 'yNotifierdll' ActiveX control is prone to a memory-corruption vulnerability Successfully exploiting this issue may allow remote attackers to execute arbitrary code in the context of the application using the affected ActiveX control Failed exploit attempts will likely crash ...