An unspecified ActiveX control in SiteKiosk before 6.5.150 is installed "safe for scripting", which allows local users to bypass security protections and read arbitrary files via certain functions.
AV:L/AC:L/Au:S/C:P/I:N/A:N
This vulnerability has a 0.32% probability of being exploited in the next 30 days, ranking higher than 23% of all scored CVEs.