Vulnerabilities > CVE-2008-1116 - Remote Code Execution vulnerability in Rising Antivirus International Rising web Scan Object 18.0.7

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
rising-antivirus-international
critical
exploit available

Summary

Insecure method vulnerability in the Web Scan Object ActiveX control (OL2005.dll) in Rising Antivirus Online Scanner allows remote attackers to force the download and execution of arbitrary code by setting the BaseURL property and invoking the UpdateEngine method. NOTE: some of these details are obtained from third party information.

Vulnerable Configurations

Part Description Count
Application
Rising_Antivirus_International
1

Exploit-Db

descriptionRising Antivirus Online Scanner Insecure Method Flaw Exploit. CVE-2008-1116. Remote exploit for windows platform
fileexploits/windows/remote/5188.html
idEDB-ID:5188
last seen2016-01-31
modified2008-02-25
platformwindows
port
published2008-02-25
reporterJohn Smith
sourcehttps://www.exploit-db.com/download/5188/
titleRising Antivirus Online Scanner Insecure Method Flaw Exploit
typeremote