Vulnerabilities > Awingsoft

DATE CVE VULNERABILITY TITLE RISK
2010-05-07 CVE-2009-4850 Buffer Errors vulnerability in Awingsoft Awakening Winds3D Viewer Plugin 3.5.0.9
The Awingsoft Awakening Winds3D Viewer plugin 3.5.0.9 allows remote attackers to execute arbitrary programs via a SceneURL property value with a URL for a .exe file.
network
awingsoft CWE-119
critical
9.3
2009-07-10 CVE-2009-2386 Improper Input Validation vulnerability in Awingsoft Awakening Winds3D Viewer Plugin 3.0.0.5/3.5.0.0
Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files via the GetURL method.
network
awingsoft CWE-20
critical
9.3