CWE-623: Unsafe ActiveX Control Marked Safe For Scripting
VariantDraft
An ActiveX control is intended for restricted use, but it has been marked as safe-for-scripting.
View on MITREBack to CWE Lookup
Extended Description
This might allow attackers to use dangerous functionality via a web page that accesses the control, which can lead to different resultant vulnerabilities, depending on the control's behavior.
Technical Details
- Structure
- Simple