Vulnerabilities > CVE-2009-4453 - Unspecified vulnerability in Softcab Sound Converter Activex 1.2

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
softcab
exploit available

Summary

Insecure method vulnerability in SoftCab Sound Converter ActiveX control (sndConverter.ocx) 1.2 allows remote attackers to create or overwrite arbitrary files via the SaveFormat method. NOTE: some of these details are obtained from third party information. Per: http://cwe.mitre.org/data/definitions/749.html 'CWE-749: Exposed Dangerous Method or Function'

Vulnerable Configurations

Part Description Count
Application
Softcab
1

Exploit-Db

descriptionSoftCab Sound Converter ActiveX Insecure Method Exploit (sndConverter.ocx). CVE-2009-4453. Webapps exploit for windows platform
fileexploits/windows/webapps/10649.html
idEDB-ID:10649
last seen2016-02-01
modified2009-12-25
platformwindows
port
published2009-12-25
reporterThE g0bL!N
sourcehttps://www.exploit-db.com/download/10649/
titleSoftCab Sound Converter ActiveX Insecure Method Exploit sndConverter.ocx
typewebapps