10
CVSSv2

CVE-2012-4333

Published: 14/08/2012 Updated: 29/08/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in the BackupToAvi method in the (1) UMS_Ctrl 1.5.1.1 and (2) UMS_Ctrl_STW 2.0.1.0 ActiveX controls in Samsung NET-i viewer 1.37.120316 allow remote malicious users to execute arbitrary code via a long string in the fname parameter. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

samsung net-i viewer 1.37.120316

Exploits

## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = NormalRanking inc ...
####################################################################### Luigi Auriemma Application: Samsung NET-i ware wwwsamsungsecuritycom/product/product_viewasp?idx=6447 wwwsamsungsecuritycom/product/product_viewasp?idx=5828 Versions: <= 137 Platforms: Wi ...