Loading
The GIGABYTE Dldrv2 ActiveX control 1.4.206.11 allows remote attackers to (1) download arbitrary programs onto a client system, and execute these programs, via vectors involving the dl method; and (2) download arbitrary programs onto a client system via vectors involving the SetDLInfo method in conjunction with the Bdl method.
Use CWE-20, Gigabyte vendor hub and Dldrv2 Activex Control product page to widen CVE-2010-1517 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2010-1518 for nearby disclosures in the same product family.