10
CVSSv2

CVE-2007-3488

Published: 29/06/2007 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in the viewer ActiveX control in Sony Network Camera SNC-RZ25N prior to 1.30; SNC-P1 and SNC-P5 prior to 1.29; SNC-CS10 and SNC-CS11 prior to 1.06; SNC-DF40N and SNC-DF70N prior to 1.18; SNC-RZ50N and SNC-CS50N prior to 2.22; SNC-DF85N, SNC-DF80N, and SNC-DF50N prior to 1.12; and SNC-RX570N/W, SNC-RX570N/B, SNC-RX550N/W, SNC-RX550N/B, SNC-RX530N/W, and SNC-RX530N/B 3.00 and 2.x prior to 2.31; allows remote malicious users to execute arbitrary code via a long first argument to the PrmSetNetworkParam method.

Vulnerable Product Search on Vulmon Subscribe to Product

sony sony network camera snc-p5 1.0

Exploits

<!-- Sony Network Camera SNC-P5 v10 ActiveX viewer Heap Overflow PoC Camera info bsscselsonycom/BroadcastandBusiness/DisplayModel?id=79540 SNC-P5 External API documentation wwwtracor-europeinfo/racine/sony/PROG/P5/API/Documents/SNC-P5APIDocument10ENpdf /str0ke ! milw0rmcom --> <script language = 'vbscript'> S ...