CVE-2008-4385

N/A Unknown
Published: October 14, 2008 Modified: April 23, 2026
View on NVD

Description

Husdawg, LLC Systems Requirements Lab 3, as used by Instant Expert Analysis, allows remote attackers to force the download and execution of arbitrary programs via by specifiying a malicious website argument to the Init method in (1) a certain ActiveX control (sysreqlab2.cab, sysreqlab.dll, sysreqlabsli.dll, or sysreqlab2.dll) and (2) a certain Java applet in RLApplet.class in sysreqlab2.jar or sysreqlab.jar.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/32236
Source: cret@cert.org
Vendor Advisory
http://www.kb.cert.org/vuls/id/166651
Source: cret@cert.org
Third Party Advisory US Government Resource
http://secunia.com/advisories/32236
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.kb.cert.org/vuls/id/166651
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory US Government Resource
http://www.sec-consult.com/files/20081016-0_sysreqlab.txt
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/497400
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/31752
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.systemrequirementslab.com/bulletins/security_bulletin_1.html
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/45873
Source: af854a3a-2127-422b-91ae-364da2661108

14 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
71.9%
99th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

systemrequirementslab