RSS   Vulnerabilities for 'Dldrv2 activex control'   RSS

2010-08-02
 
CVE-2010-1518

CWE-20
 

 
Array index error in the SetDLInfo method in the GIGABYTE Dldrv2 ActiveX control 1.4.206.11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via the item argument.

 
 
CVE-2010-1517

CWE-20
 

 
The GIGABYTE Dldrv2 ActiveX control 1.4.206.11 allows remote attackers to (1) download arbitrary programs onto a client system, and execute these programs, via vectors involving the dl method; and (2) download arbitrary programs onto a client system via vectors involving the SetDLInfo method in conjunction with the Bdl method.

 

 >>> Vendor: Gigabyte 9 Products
Gn-b46b
Dldrv2 activex control
Gb-bsi7h-6500 firmware
Gb-bxi7-5775 firmware
Aorus graphics engine
App center
Oc guru ii
Xtreme gaming engine
Gigabyte app center


Copyright 2024, cxsecurity.com

 

Back to Top