← All CVEs

CVE-2008-4384

high · 9.3

Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow remote attackers to execute arbitrary code via the (1) url, (2) toolbar, and (3) enableZoomPastMax methods.

9.3
CVSS
28.7%
EPSS (exploit prob.)
98th
EPSS percentile
2008-10-07
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
iseemedialpviewerall versions
mgi_softwarelpviewerall versions
roxiolpviewerall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-4384