1 results (0.002 seconds)

CVSS: 9.3EPSS: 9%CPEs: 1EXPL: 1

A certain ActiveX control in BaiduBar.dll in Baidu Soba Search Bar 5.4 allows remote attackers to execute arbitrary code via a request containing "a link to download and a file to execute," possibly involving remote file inclusion. Un determinado control ActiveX en BaiduBar.dll de Baidu Soba Search Bar 5.4 permite a atacantes remotos ejecutar código de su elección a través de una petición que contiene "un enlace para descargar un archivo a ejecutar", posiblemente involucrando inclusión de archivo remoto. • https://www.exploit-db.com/exploits/30431 http://secunia.com/advisories/26256 http://www.fortiguardcenter.com/advisory/FGA-2007-10.html http://www.securityfocus.com/archive/1/475320/100/0/threaded http://www.securityfocus.com/bid/25121 http://www.vupen.com/english/advisories/2007/2699 https://exchange.xforce.ibmcloud.com/vulnerabilities/35692 •