Vulnerabilities > Microsoft > Windows Image Acquisition Logger > Critical

DATE CVE VULNERABILITY TITLE RISK
2008-09-11 CVE-2008-3957 Improper Input Validation vulnerability in Microsoft Windows Image Acquisition Logger
The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system via a URL in the first argument to the Open method, in conjunction with a full destination pathname in the first argument to the Save method.
network
microsoft CWE-20
critical
9.3