7.8
CVSSv3

CVE-2018-5197

Published: 02/01/2019 Updated: 04/02/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A vulnerability in the ExtCommon.dll user extension module version 9.2, 9.2.1, 9.2.2 of Xplatform ActiveX could allow malicious user to perform a command injection attack. The vulnerability is due to insufficient input validation of command parameters. An crafted malicious parameters could cause arbitrary command to execute.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

tobesoft xplatform 9.2.2

tobesoft xplatform 9.2.1

tobesoft xplatform 9.2