VYPR
High severity7.8NVD Advisory· Published May 28, 2020· Updated Jun 17, 2026

CVE-2020-7812

CVE-2020-7812

Description

Ezhttptrans.ocx ActiveX Control in Kaoni ezHTTPTrans 1.0.0.70 and prior versions contain a vulnerability that could allow remote attacker to download arbitrary file by setting the arguments to the activex method. This can be leveraged for code execution by rebooting the victim’s PC.

Affected products

2
  • Kaoni/Ezhttptransllm-fuzzy2 versions
    <=1.0.0.70+ 1 more
    • (no CPE)range: <=1.0.0.70
    • (no CPE)range: 1.0.0.70

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.