CVE-2008-4384
high · 9.3Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow remote attackers to execute arbitrary code via the (1) url, (2) toolbar, and (3) enableZoomPastMax methods.
9.3
CVSS
28.7%
EPSS (exploit prob.)
98th
EPSS percentile
2008-10-07
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| iseemedia | lpviewer | all versions |
| mgi_software | lpviewer | all versions |
| roxio | lpviewer | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://secunia.com/advisories/32140
- http://www.kb.cert.org/vuls/id/848873
- http://www.securityfocus.com/bid/31604
- http://www.vupen.com/english/advisories/2008/2749
- https://exchange.xforce.ibmcloud.com/vulnerabilities/45699
- http://secunia.com/advisories/32140
- http://www.kb.cert.org/vuls/id/848873
- http://www.securityfocus.com/bid/31604
- http://www.vupen.com/english/advisories/2008/2749
- https://exchange.xforce.ibmcloud.com/vulnerabilities/45699
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2008-4384