9.3
CVSSv2

CVE-2009-1092

Published: 25/03/2009 Updated: 10/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Use-after-free vulnerability in the LIVEAUDIO.LiveAudioCtrl.1 ActiveX control in LIVEAU~1.OCX 7.0 for GeoVision DVR systems allows remote malicious users to execute arbitrary code by calling the GetAudioPlayingTime method with certain arguments.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

geovision liveaudio activex control 7.0

Exploits

<!-- 02/03/2009 145746 GeoVision LiveAudio ActiveX Control GetAudioPlayingTime() remote freed-memory access exploit (IE7) by Nine:Situations:Group::trotzkista vendor site: wwwgeovisioncomtw/ our site: retrogodaltervistaorg/ details: CLSID: {814A3C52-B6F7-4AEA-A9BC-7849B9B0ECA8} Progid: LIVEAUDIOLiveAudioCtrl1 Binary Path ...