9.3
CVSSv2

CVE-2010-2931

Published: 05/08/2010 Updated: 19/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in SigPlus Pro 3.74 ActiveX control allows remote malicious users to execute arbitrary code via a long eighth argument (HexString) to the LCDWriteString method.

Vulnerable Product Search on Vulmon Subscribe to Product

topazsystems sigplus pro activex control 3.74

Exploits

<html> <!-- =================================================================================================== SigPlus Pro v374 ActiveX Signature Capture LCDWriteString() Remote BoF JIT Spray - aslr/dep bypass Author: mr_me - @StevenSeeley Download: wwwtopazsystemscom/Software/download/sigplusactivexhtm Tested on: Windows 7 Pro ...