9.3
CVSSv2

CVE-2014-3911

Published: 11/06/2014 Updated: 12/06/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Samsung iPOLiS Device Manager prior to 1.8.7 allow remote malicious users to execute arbitrary code via unspecified values to the (1) Start, (2) ChangeControlLocalName, (3) DeleteDeviceProfile, (4) FrameAdvanceReader, or other unknown method in the XNSSDKDEVICE.XnsSdkDeviceCtrlForIpInstaller.1 ActiveX control.

Vulnerable Product Search on Vulmon Subscribe to Product

samsung ipolis device manager

Exploits

Samsung iPolis suffers from a buffer overflow vulnerability in XnsSdkDeviceIpInstallerocx ...