CVE-2008-0631 EXPLOIT
4.3
MEDIUM · CVSS 2.0 · EPSS 3.6% (pctl 89)
Patch early
A public exploit exists.
Description
Multiple ActiveX controls in MailBee.dll in MailBee Objects 5.5 allow remote attackers to (1) overwrite arbitrary files via the SaveToDisk method, or (2) modify files via the AddStringToFile method.
Scoring
| CVSS | 4.3 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
| EPSS | 3.56% — more likely to be exploited than 89% of all CVEs |
| Weakness | CWE-20 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2008-02-06 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| afterlogic | mailbee objects |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | MailBee Objects 5.5 - 'MailBee.dll' Remote Insecure Method | 2008-01-28 |
References
→ the Explorer · watch your stack · NVD