Arbitrary Program Execution via Crafted HTML Document in ICONICS GENESIS32 8.0-8.05

Arbitrary Program Execution via Crafted HTML Document in ICONICS GENESIS32 8.0-8.05

CVE-2014-0758 · HIGH Severity

AV:N/AC:M/AU:N/C:C/I:C/A:C

An ActiveX control in GenLaunch.htm in ICONICS GENESIS32 8.0, 8.02, 8.04, and 8.05 allows remote attackers to execute arbitrary programs via a crafted HTML document.

Learn more about our Web Application Penetration Testing UK.