CVE-2013-5026: Critical severity lookout vulnerability
Published Aug 6, 2013
·Updated
An ActiveX control in lookout650.ocx, lookout660.ocx, and lookout670.ocx in National Instruments Lookout 6.5 through 6.7 allows remote attackers to execute arbitrary code by triggering the download of, and calls to, an arbitrary DLL file.
Affected Software
3 affected components
NI Lookout=6.5
NI Lookout=6.6
NI Lookout=6.7
Remediation
Event History
Aug 6, 2013
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5026?
CVE-2013-5026 has a high severity level due to its potential for remote code execution.
2
How do I fix CVE-2013-5026?
To fix CVE-2013-5026, update National Instruments Lookout to a version beyond 6.7.
3
What software versions are affected by CVE-2013-5026?
CVE-2013-5026 affects National Instruments Lookout versions 6.5, 6.6, and 6.7.
4
What type of vulnerability is CVE-2013-5026?
CVE-2013-5026 is a remote code execution vulnerability caused by an insecure ActiveX control.
5
Can CVE-2013-5026 be exploited remotely?
Yes, CVE-2013-5026 can be exploited remotely by attackers triggering the download of malicious DLL files.