Vulnerabilities > Webex Communications > Downloader Activexcontrol

DATE CVE VULNERABILITY TITLE RISK
2006-07-07 CVE-2006-3423 Improper Input Validation vulnerability in Webex Communications Downloader Activexcontrol and Downloader Java
WebEx Downloader ActiveX Control and WebEx Downloader Java before 2.1.0.0 do not validate downloaded components, which allows remote attackers to execute arbitrary code via a website that activates the GpcUrlRoot and GpcIniFileName ActiveX controls to cause the client to download a DLL file.
network
webex-communications CWE-20
critical
9.3