9.3
CVSSv2

CVE-2008-7168

Published: 08/09/2009 Updated: 17/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Insecure method vulnerability in the UUSee UUUpgrade ActiveX control (UUUpgrade.ocx 3.0.2.12) allows remote malicious users to force the download and overwrite of arbitrary files via crafted arguments to the Update method, as exploited in the wild in June 2009.

Vulnerable Product Search on Vulmon Subscribe to Product

uusee uusee 4.0.0.32_2008

uusee uuupgrade.ocx 3.0.2.12

Exploits

source: wwwsecurityfocuscom/bid/29963/info UUSee is prone to a vulnerability that can cause malicious files to be downloaded and saved to arbitrary locations on an affected computer Attackers may exploit this issue to overwrite sensitive files with malicious data that will compromise the affected computer Other attacks are possible U ...