| Sopcast SopCore ActiveX SetExternalPlayer() code execution (SopcastSetexternalplayerCodeExecution) |
|---|
| Vuln ID: | 48955 | |
|---|---|---|
| Risk Level: | High |
SopcastSetexternalplayerCodeExecution |
| Platforms: | SopCast SopCore ActiveX: 3.0.3.501 | |
| Description: | The Sopcast SopCore ActiveX control (sopocx.ocx) could allow a remote attacker to execute arbitrary code on the system. By persuading a victim to visit a specially-crafted Web page, a remote attacker could exploit this vulnerability using the SetExternalPlayer() insecure method to execute arbitrary code on the system with the privileges of the victim or cause the browser to crash. |
|
| Remedy: | No remedy available as of May 1, 2013. |
|
| False Positives: | ||
| False Negatives: | ||
| Required Permission: | Windows login | |
| Additional Information: | ||
| References: | BugTraq Mailing List, Wed Feb 25 2009 - 23:56:19 CST SopCast Web site milw0rm.com [2009-03-03] ISS X-Force CVE CVE-2009-0811 |
|
![]() Know Your Risks |
![]() Common Vulnerabilties & Exposures |