CVE-1999-1575
Last modified
CVE-1999-1575 is a vulnerability of currently unknown severity. The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as "Safe for Scripting," which allows remote attackers to create and modify files and execute arbitrary commands.. EPSS estimates a 35.63% chance of exploitation in the next 30 days.
Description
The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as "Safe for Scripting," which allows remote attackers to create and modify files and execute arbitrary commands.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Internet Explorer | 4.0.1 |
| Microsoft | Internet Explorer | 5.0 |
References
- http://www.kb.cert.org/vuls/id/23412US Government Resource
- http://www.kb.cert.org/vuls/id/24839US Government Resource
- http://www.kb.cert.org/vuls/id/26924US Government Resource
- http://www.kb.cert.org/vuls/id/41408US Government Resource
- http://www.kb.cert.org/vuls/id/9162US Government Resource
- http://www.kb.cert.org/vuls/id/23412US Government Resource
- http://www.kb.cert.org/vuls/id/24839US Government Resource
- http://www.kb.cert.org/vuls/id/26924US Government Resource
- http://www.kb.cert.org/vuls/id/41408US Government Resource
- http://www.kb.cert.org/vuls/id/9162US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-1999-1575?
How severe is CVE-1999-1575?
How do I fix CVE-1999-1575?
Are you affected by CVE-1999-1575?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
