9.3
CVSSv2

CVE-2009-4850

Published: 07/05/2010 Updated: 17/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote malicious users to execute arbitrary programs via a SceneURL property value with a URL for a .exe file.

Vulnerable Product Search on Vulmon Subscribe to Product

awingsoft awakening winds3d viewer plugin 3.5.0.9

Exploits

## # $Id: awingsoft_winds3d_sceneurlrb 10389 2010-09-20 04:38:13Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/c ...