OpenText FirstClass 8.0 client does not properly sanitize strings before passing them to the Windows ShellExecute API, which allows remote attackers to execute arbitrary commands via a UNC path in a bookmark.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Centrinity_firstclass_desktop_client | Centrinity | 8.0 (including) | 8.0 (including) |