EMC Captiva eInput 2.1.1 before 2.1.1.37 does not restrict the origin of calls to ActiveX functions, which allows remote attackers to read arbitrary files or cause a denial of service via a crafted web site.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Captiva_einput | Emc | * | 2.1.1.37 (excluding) |