7.5
CVSSv2

CVE-2007-4903

Published: 17/09/2007 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in a certain ActiveX control in CryptoX.dll 2.0 and previous versions in the Ultra Crypto Component allow remote malicious users to execute arbitrary code via (1) a long string in the first argument to the AcquireContext method or (2) an unspecified vector to the DeleteContext method.

Vulnerable Product Search on Vulmon Subscribe to Product

ultra shareware ultra crypto component 2.0.2007.801

Exploits

<pre> <code><span style="font: 10pt Courier New;"><span class="general1-symbol"><body bgcolor="#E0E0E0">----------------------------------------------------------------------------------- <b>Ultra Crypto Component (CryptoXdll <= 20) "AcquireContext()" Remote BoF Exploit</b> url: wwwultrashare ...