9.3
CVSSv2

CVE-2012-5306

Published: 06/10/2012 Updated: 26/04/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in the SelectDirectory method in DcsCliCtrl.dll in Camera Stream Client ActiveX Control, as used in D-Link DCS-5605 PTZ IP Network Camera, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a long string argument.

Vulnerable Product Search on Vulmon Subscribe to Product

dlink dcs-5605 ptz ip network camera -

dlink camera stream client activex control 1.0.0.4519

Exploits

D-Link SecuriCam DCS-5605 Network Surveillance ActiveX Control DcsCliCtrldll lstrcpyW Remote Buffer Overflow Vulnerability tested against: Microsoft Windows Server 2003 r2 sp2 Internet Explorer 7/8 Live demo: 20312522770/eng/indexcgi username: dlink password: dlink product homepage: wwwd-linkcom/products/?pi ...

Github Repositories

Class project for testing the DLink-DCS-5009L

DLink-DCS-5009L Class project for testing the DLink-DCS-5009L Instruction Manuals: -wwwdlinkcom/-/media/Consumer_Products/DCS/DCS%205009L/Manual/DCS_5009L_A1_Manual_v1_00_WWpdf -wwwdlinkcom/-/media/Consumer_Products/DCS/DCS%205009L/DCS-5009L%20DS_FINALpdf Materials for class: -Laptops (everyone) -Kali Linux (everyone, download iso from wwwkaliorg/d