9.3
CVSSv2

CVE-2006-5820

Published: 02/04/2007 Updated: 17/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary function pointer, which allows remote malicious users to execute arbitrary code via a modified pointer value.

Vulnerable Product Search on Vulmon Subscribe to Product

aol aol 9.0

Exploits

require 'msf/core' module Msf class Exploits::Windows::Browser::AOL_SuperBuddy_LinkSBIcons < Msf::Exploit::Remote include Exploit::Remote::HttpServer::HTML def initialize(info = {}) super(update_info(info, 'Name' => 'AOL SbSuperbuddy vulnerability', 'Description' => %q{ This module exploits a flaw in AOL Sb ...
This Metasploit module exploits a flaw in the AOL SbSuperBuddy ActiveX control ...