Vulnerabilities > CVE-2008-4699 - Insecure Method vulnerability in Microsoft Peachtree Accounting 2004

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
microsoft
critical
exploit available

Summary

Insecure method vulnerability in the ActiveX control (PAWWeb11.ocx) in Peachtree Accounting 2004 allows remote attackers to execute arbitrary programs via the ExecutePreferredApplication method.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1

Exploit-Db

descriptionPeachtree Accounting 2004 (PAWWeb11.ocx) ActiveX Insecure Method. CVE-2008-4699. Remote exploit for windows platform
fileexploits/windows/remote/6414.html
idEDB-ID:6414
last seen2016-01-31
modified2008-09-10
platformwindows
port
published2008-09-10
reporterJeremy Brown
sourcehttps://www.exploit-db.com/download/6414/
titlePeachtree Accounting 2004 PAWWeb11.ocx ActiveX Insecure Method
typeremote