CVE-2008-0221 Information
Feb 14, 2021
cve
Description
Directory traversal vulnerability in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allows remote attackers to execute arbitrary programs via a ..\ (dot dot backslash) in the second argument to the DoWebLaunch method. NOTE: some of these details are obtained from third party information.
Reference
http://marc.info/?l=full-disclosure&m=119984138526735&w=2 http://secunia.com/advisories/28379 http://www.vupen.com/english/advisories/2008/0077 https://www.exploit-db.com/exploits/4869
Share on: