CVE-2008-3156: Critical severity panda activescan vulnerability
Published Jul 11, 2008
·Updated
The ActiveScan ActiveX Control (as2guiie.dll) in Panda ActiveScan before 1.02.00 allows remote attackers to download and execute arbitrary cabinet (CAB) files via unspecified URLs passed to the Update method.
Affected Software
1 affected component
Panda Panda ActiveScan=2.0
Event History
Jul 11, 2008
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3156?
CVE-2008-3156 is considered a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2008-3156?
To fix CVE-2008-3156, update Panda ActiveScan to version 1.02.00 or later.
3
What are the potential impacts of CVE-2008-3156?
The potential impacts of CVE-2008-3156 include unauthorized download and execution of arbitrary files on the victim's system.
4
Who is affected by CVE-2008-3156?
Users of Panda ActiveScan version 2.0 are affected by CVE-2008-3156.
5
Is there a workaround for CVE-2008-3156?
A possible workaround for CVE-2008-3156 is to disable the ActiveX control until an update can be applied.