9.3
CVSSv2

CVE-2008-4384

Published: 07/10/2008 Updated: 08/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow remote malicious users to execute arbitrary code via the (1) url, (2) toolbar, and (3) enableZoomPastMax methods.

Vulnerable Product Search on Vulmon Subscribe to Product

roxio lpviewer

mgi software lpviewer

iseemedia lpviewer

Exploits

## # $Id: lpviewer_urlrb 9262 2010-05-09 17:45:00Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Met ...