CVE-2019-19169

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/05/2020
Last modified:
19/05/2020

Description

Dext5.ocx ActiveX 5.0.0.116 and eariler versions contain a vulnerability, which could allow remote attacker to download arbitrary file by setting the arguments to the activex method. This can be leveraged for code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:raonwiz:dext5:2.7:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:activex:*:*:*:*:*:*:*:* 5.0.0.117 (excluding)