CVE-2009-0813 EXPLOIT
9.3
HIGH · CVSS 2.0 · EPSS 9.1% (pctl 95)
Patch early
A public exploit exists.
Description
Insecure method vulnerability in the ImeraIEPlugin ActiveX control (ImeraIEPlugin.dll 1.0.2.54) in Imera TeamLinks Client allows remote attackers to force the download and execution of arbitrary URLs via modified DownloadProtocol, DownloadHost, DownloadPort, and DownloadURI parameters.
Scoring
| CVSS | 9.3 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
| EPSS | 9.09% — more likely to be exploited than 95% of all CVEs |
| Weakness | CWE-20 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2009-03-05 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| imera | teamlinks |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Imera ImeraIEPlugin - ActiveX Control Remote Code Execution | 2009-03-03 |
References
- http://secunia.com/advisories/34103
- http://www.vupen.com/english/advisories/2009/0591
- https://exchange.xforce.ibmcloud.com/vulnerabilities/49028
- https://www.exploit-db.com/exploits/8144
- http://secunia.com/advisories/34103
- http://www.vupen.com/english/advisories/2009/0591
- https://exchange.xforce.ibmcloud.com/vulnerabilities/49028
- https://www.exploit-db.com/exploits/8144
→ the Explorer · watch your stack · NVD