Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Insecure method vulnerability in the EasyGrid.SGCtrl.32 ActiveX control in EasyGrid.ocx 1.0.0.1 in AAA EasyGrid ActiveX 3.51 allows remote attackers to create and overwrite arbitrary files via the (1) DoSaveFile or (2) DoSaveHtmlFile method. NOTE: vector 1 could be leveraged for code execution by creating executable files in Startup folders or by accessing files using hcp:// URLs. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Share2 Easy Grid ActiveX控件任意文件覆盖漏洞
Vulnerability Description
Easy Grid ActiveX控件是用于打印、预览表格、图标、公式、表达式的工具。 EasyGrid.SGCtrl.32 ActiveX控件(EasyGrid.ocx)没有安全地调用DoSaveFile()方式,如果用户受骗访问了恶意网页并向该方式传送了特制参数的话,就会导致向用户系统写入任意文件。
CVSS Information
N/A
Vulnerability Type
N/A