Vulnerabilities (CVE)

Filtered by vendor First4internet Xcp Drm Subscribe
Filtered by product First4internet Xcp Drm
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-3650 1 First4internet Xcp Drm 1 First4internet Xcp Drm 2024-02-04 9.3 HIGH N/A
The CodeSupport.ocx ActiveX control, as used by Sony to uninstall the First4Internet XCP DRM, has "safe for scripting" enabled, which allows remote attackers to execute arbitrary code by calling vulnerable functions such as RebootMachine, IsAdministrator, and ExecuteCode.