peter bassill · operator
$ cve CVE-2009-0813 JSON

CVE-2009-0813 EXPLOIT

9.3
HIGH · CVSS 2.0 · EPSS 9.1% (pctl 95)

Patch early

A public exploit exists.

Description

Insecure method vulnerability in the ImeraIEPlugin ActiveX control (ImeraIEPlugin.dll 1.0.2.54) in Imera TeamLinks Client allows remote attackers to force the download and execution of arbitrary URLs via modified DownloadProtocol, DownloadHost, DownloadPort, and DownloadURI parameters.

Scoring

CVSS9.3 (HIGH, v2.0)
VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS9.09% — more likely to be exploited than 95% of all CVEs
WeaknessCWE-20
On CISA KEVno
Public exploityes
Published2009-03-05
Last modified2026-06-16

Affected (1)

VendorProduct
imerateamlinks

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD