CWE-623: Unsafe ActiveX Control Marked Safe For Scripting
Unsafe ActiveX Control Marked Safe For Scripting
Weakness ID: 623 (Weakness Variant)
Status: Draft
Description
Description Summary
An ActiveX control is intended for restricted use, but it has
been marked as safe-for-scripting.
Extended Description
This might allow attackers to use dangerous functionality via a web page
that accesses the control, which can lead to different resultant
vulnerabilities, depending on the control's behavior.