7.5
CVSSv2

CVE-1999-1484

Published: 24/09/1999 Updated: 19/12/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote malicious user to execute arbitrary commands via the methods (1) vAddNewsServer or (2) bIsNewsServerConfigured.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft msn setup bulletin board services 4.71.0.10

Exploits

source: wwwsecurityfocuscom/bid/668/info There is a buffer overflow in the 471010 version of the MSN Setup BBS ActiveX control (setupbbsocx) This ActiveX control is marked 'Safe for Scripting' Arbitrary commands may be executed if the ActiveX control is run in a malicious manner SETUPBBS: When this control is initialised, it w ...