NewvCommon.ocx ActiveX Insecure Method Vulnerability ======== Vulnerable:All Version Vendor:www.newv.com.cn Details: ======== A Insecure method vulnerability has been found in NewV SmartClient. The specific flaw exists within the DelFile method of the Newv ActiveX control (NewvCommon.ocx). The DelFile method does not handle user's input exactly that can be used to delete arbitrary files on users system. POC: ======== Function DelFile ( ByVal FilePath As Variant ) As String Timeline: ======== 2010.10.23 Report to vendor,no response. 2011.01.10 Public Reference: ======== http://www.newv.com.cn http://demo.newv.com.cn/lds/module/smartclientsetting.exe http://www.nansec.com