Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The InstallProduct routine in the Verisign VUpdater.Install (aka i-Nav) ActiveX control does not verify Microsoft Cabinet (.CAB) files, which allows remote attackers to run an arbitrary executable file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Verisign i-Nav ActiveX控件 VUpdater.Install控件 远程溢出漏洞
Vulnerability Description
Verisign i-Nav是浏览器的配套插件,允许使用自己的语言来搜索网络。 Verisign i-Nav ActiveX控件的VUpdater.Install控件用于在IE、Outlook和Outlook Express中提供对国际化域名(IDN)的本地支持。由于这个控件没有验证InstallProduct例程中的Microsoft Cabinet(.CAB)文件,导致攻击者可以触发缓冲区溢出漏洞,允许以当前用户的环境执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A