Vulnerability Details CVE-2010-0990
Stack-based buffer overflow in Creative Software AutoUpdate Engine ActiveX Control 2.0.12.0, as used in Creative Software AutoUpdate 1.40.01, allows remote attackers to execute arbitrary code via vectors related to the BrowseFolder method.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.058
EPSS Ranking 90.2%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2010-0990
-
cpe:2.3:a:creative:autoupdate:1.40.01
-
cpe:2.3:a:creative:autoupdate_engine_activex_control:2.0.12.0