The Fetch.FetchContact.1 ActiveX control (Fetch.dll) for Rediff Bol 7.0 allows remote attackers to read the Windows Address Book via the FullAddressBook method.
Link | Tags |
---|---|
http://secunia.com/advisories/16685 | third party advisory vendor advisory |
http://www.infogreg.com/security/im/rediff-bol-7-exposes-wab.html | vendor advisory url repurposed exploit |