HomeTrend MicroCVE-2008-2434

CVE-2008-2434

UNKNOWN
9.3CVSS
Published: 2008-12-23
Updated: 2025-04-09
AI Analysis

Description

The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to download an arbitrary library file onto a client system via a "custom update server" argument. NOTE: this can be leveraged for code execution by writing to a Startup folder.

CVSS Metrics

Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Access Vector
network
Access Cmplx
medium
Auth
none
Confidentiality
complete
Integrity
complete
Availability
complete
Weaknesses
CWE-94

Metadata

Primary Vendor
TREND_MICRO
Published
12/23/2008
Last Modified
4/9/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

trend_micro : housecalltrend_micro : housecalltrend_micro : housecall

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2008-2434 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com