CVE-2008-4388
CVSS Score Not Available
63.44%
MEDIUM RiskEPSS (98th percentile)
The LaunchObj ActiveX control before 5.2.2.865 in launcher.dll in Symantec AppStream Client 5.2.x before 5.2.2 SP3 MP1 does not properly validate downloaded files, which allows remote attackers to execute arbitrary code via the installAppMgr method and unspecified other methods.
Published: 1/20/2009
Modified: 4/9/2025
Vulnerability Summary
EPSS Score (Exploitation Probability)
63.44%MEDIUM Exploitation Risk
98th percentile
This vulnerability has a 63.44% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.