peter bassill · operator
$ cve CVE-2008-1605 JSON

CVE-2008-1605 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 1.9% (pctl 79)

Patch early

A public exploit exists.

Description

The (1) ltmmCaptureCtrl Class, (2) ltmmConvertCtrl Class, and (3) ltmmPlayCtrl Class ActiveX controls (ltmm15.dll 15.1.0.17 and earlier) in LEADTOOLS Multimedia Toolkit 15 allow attackers to overwrite arbitrary files via the SaveSettingsToFile method.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS1.9% — more likely to be exploited than 79% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploityes
Published2008-04-01
Last modified2026-06-16

Affected (1)

VendorProduct
leadtoolsmultimedia toolkit

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD