{
    "id": "CVE-2009-0811",
    "published": "2009-03-04 17:30:02",
    "last_modified": "2026-06-16 23:05:51",
    "cvss_score": "9.3",
    "cvss_severity": "HIGH",
    "cvss_version": "2.0",
    "cvss_vector": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
    "cwe": "CWE-94",
    "description": "Insecure method vulnerability in the SopCast SopCore ActiveX control in sopocx.ocx 3.0.3.501 allows remote attackers to execute arbitrary programs via an executable file name in the argument to the SetExternalPlayer method.",
    "epss_score": "0.05537",
    "epss_percentile": "0.92615",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-10-07 18:17:07",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "sopcast",
            "product": "sopcore_activex_control"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "8143",
            "title": "Sopcast SopCore Control - 'sopocx.ocx' Command Execution",
            "date": "2009-03-03",
            "url": "https://www.exploit-db.com/exploits/8143"
        }
    ],
    "refs_list": [
        "http://retrogod.altervista.org/9sg_sopcastia.html",
        "http://www.securityfocus.com/archive/1/501252/100/0/threaded",
        "http://www.securityfocus.com/bid/33920",
        "https://exchange.xforce.ibmcloud.com/vulnerabilities/48955",
        "http://retrogod.altervista.org/9sg_sopcastia.html",
        "http://www.securityfocus.com/archive/1/501252/100/0/threaded",
        "http://www.securityfocus.com/bid/33920",
        "https://exchange.xforce.ibmcloud.com/vulnerabilities/48955"
    ]
}