Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allows remote attackers to execute arbitrary commands via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DateV DVBSExeCall.ocx ActiveX控件远程命令执行漏洞
Vulnerability Description
DateV是德国的一家软件公司,产品主要为财务、税务、咨询类软件。 DateV存在任意代码执行漏洞。在安装DATEV Base System期间默认会安装一个Datev DVBSExeCall ActiveX控件(DVBSExeCall.ocx)。该控件没有正确地过滤传送给ExecuteExe函数的输入参数,用户受骗访问了恶意网页就可能导致执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A