CVE-2019-12811

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
07/10/2019
Last modified:
10/10/2019

Description

ActiveX Control in MyBuilder before 6.2.2019.814 allow an attacker to execute arbitrary command via the ShellOpen method. This can be leveraged for code execution

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:activesoft:mybuilder:*:*:*:*:*:*:*:* 6.2.2019.814 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*