CVE-2009-4225
high · 9.3Stack-based buffer overflow in the PestPatrol ActiveX control (ppctl.dll) 5.6.7.9 in CA eTrust PestPatrol allows remote attackers to execute arbitrary code via a long argument to the Initialize method.
9.3
CVSS
30.6%
EPSS (exploit prob.)
98th
EPSS percentile
2009-12-08
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| ca | etrust_pestpatrole_ppctl.dll_activex | 5.6.7.9 |
Check a specific version with /api/v1/cve/match.
References
- http://www.fortiguard.com/encyclopedia/vulnerability/ca.etrust.pestpatrol.ppctl.dll.activex.access.html
- http://www.metasploit.com/redmine/projects/framework/repository/revisions/7167/entry/modules/exploits/windows/fileformat/etrust_pestscan.rb
- http://www.securityfocus.com/bid/37133
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54458
- http://www.fortiguard.com/encyclopedia/vulnerability/ca.etrust.pestpatrol.ppctl.dll.activex.access.html
- http://www.metasploit.com/redmine/projects/framework/repository/revisions/7167/entry/modules/exploits/windows/fileformat/etrust_pestscan.rb
- http://www.securityfocus.com/bid/37133
- https://exchange.xforce.ibmcloud.com/vulnerabilities/54458
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2009-4225