CVE-2010-1517: Input Validation
The GIGABYTE Dldrv2 ActiveX control 1.4.206.11 allows remote attackers to (1) download arbitrary programs onto a client system, and execute these programs, via vectors involving the dl method; and (2) download arbitrary programs onto a client system via vectors involving the SetDLInfo method in conjunction with the Bdl method.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1517?
CVE-2010-1517 has a high severity rating due to the potential for remote code execution.
How do I fix CVE-2010-1517?
To fix CVE-2010-1517, update the GIGABYTE Dldrv2 ActiveX control to the latest version that addresses this vulnerability.
What does CVE-2010-1517 allow an attacker to do?
CVE-2010-1517 allows remote attackers to download and execute arbitrary programs on a client system.
Is CVE-2010-1517 specific to any operating systems?
CVE-2010-1517 primarily affects Windows systems that have the vulnerable GIGABYTE Dldrv2 ActiveX control installed.
What is the affected version of GIGABYTE Dldrv2 ActiveX control for CVE-2010-1517?
The affected version for CVE-2010-1517 is GIGABYTE Dldrv2 ActiveX control 1.4.206.11.