CWE-623: Unsafe ActiveX Control Marked Safe For Scripting

VariantDraft

An ActiveX control is intended for restricted use, but it has been marked as safe-for-scripting.

View on MITRE
Back to CWE Lookup

Extended Description

This might allow attackers to use dangerous functionality via a web page that accesses the control, which can lead to different resultant vulnerabilities, depending on the control's behavior.

Technical Details

Structure
Simple

Applicable To

Languages
Platforms

Learn More